PT-2025-33189 · Unknown · Cleverreach® Wp

Chuongvn

·

Published

2025-08-14

·

Updated

2025-08-14

·

CVE-2025-49059

CVSS v3.1

9.3

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:L
Name of the Vulnerable Software and Affected Versions: CleverReach® WP versions through 1.5.20
Description: CleverReach® WP is susceptible to a SQL injection flaw due to improper neutralization of special elements within SQL commands. This allows for potential SQL injection attacks.
Recommendations: Update CleverReach® WP to a version later than 1.5.20.

Fix

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2025-49059

Affected Products

Cleverreach® Wp