PT-2026-46200 · Themerig · Listing Hub Cms

Deyaa Muhammad

·

Published

2026-06-04

·

Updated

2026-06-04

·

CVE-2019-25730

CVSS v3.1

8.2

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N
Listing Hub CMS 1.0 contains a SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the id parameter. Attackers can send GET requests to pages.php with crafted id values using error-based SQL injection techniques to extract database credentials, usernames, and version information.

Exploit

Fix

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2019-25730

Affected Products

Listing Hub Cms