PT-2025-45444 · Qumagie · Qumagie

Long Hà

·

Published

2025-11-07

·

Updated

2025-11-10

·

CVE-2025-52425

CVSS v2.0

10

Critical

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions QuMagie versions prior to 2.7.0
Description An SQL injection issue exists in QuMagie that could allow a remote attacker to execute unauthorized code or commands. The vulnerability can be exploited through SQL injection.
Recommendations Update to QuMagie version 2.7.0 or later.

Fix

RCE

SQL injection

Weakness Enumeration

Related Identifiers

BDU:2026-00055
CVE-2025-52425

Affected Products

Qumagie