PT-2025-17190 · Unknown · Stylemix Cost Calculator Builder

Trương Hữu Phúc

·

Published

2025-04-17

·

Updated

2025-04-18

·

CVE-2025-39587

CVSS v3.1

9.3

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:L
Name of the Vulnerable Software and Affected Versions Stylemix Cost Calculator Builder versions 3.2.65 and earlier
Description The issue is related to an SQL Injection vulnerability, which allows attackers to inject malicious SQL commands. This is due to the improper neutralization of special elements used in an SQL command.
Recommendations For versions 3.2.65 and earlier, update to a version that fixes the SQL Injection vulnerability. As a temporary workaround, consider restricting access to sensitive database operations to minimize the risk of exploitation.

Fix

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2025-39587

Affected Products

Stylemix Cost Calculator Builder