PT-2026-27375 · Netart Media · Netart Media Blog System
Published
2026-03-24
·
Updated
2026-03-24
·
CVE-2019-25641
CVSS v3.1
8.2
High
| AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N |
Netartmedia Vlog System contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the email parameter. Attackers can send POST requests to index.php with malicious email values in the forgotten password module to extract sensitive database information.
Exploit
Fix
SQL injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Netart Media Blog System