Unknown · Redefiningtheweb Bma Lite · CVE-2025-39518
**Name of the Vulnerable Software and Affected Versions**
RedefiningTheWeb BMA Lite versions 1.4.2 and earlier
**Description**
The issue is related to an SQL Injection vulnerability due to improper neutralization of special elements used in an SQL command. This allows for SQL Injection attacks.
**Recommendations**
For versions 1.4.2 and earlier, update to a version that includes a fix for this issue, as no specific workaround is provided for these versions.
As a temporary workaround, consider restricting access to sensitive database operations to minimize the risk of exploitation.