PT-2025-26425 · Unknown · Thanhtungtnt Video List Manager

Chu The Anh

·

Published

2025-06-20

·

Updated

2025-06-20

·

CVE-2025-52821

CVSS v3.1

8.5

High

VectorAV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:L
Name of the Vulnerable Software and Affected Versions: thanhtungtnt Video List Manager versions through 1.7
Description: The issue is related to an SQL Injection vulnerability, specifically an Improper Neutralization of Special Elements used in an SQL Command. This allows for SQL Injection, potentially enabling cyber threats.
Recommendations: For thanhtungtnt Video List Manager versions through 1.7, update to a version that is not affected by this issue. As a temporary workaround, consider restricting access to sensitive database elements to minimize the risk of exploitation.

Fix

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2025-52821

Affected Products

Thanhtungtnt Video List Manager