CVE-2025-56407
A vulnerability has been found in HuangDou UTCMS V9 and classified as critical. This vulnerability affects the function
A vulnerability has been found in HuangDou UTCMS V9 and classified as critical. This vulnerability affects the function RunSql of the file app/modules/ut-data/admin/mysql.php. The manipulation of the argument sql leads to sql injection.
The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
HIGH · CVSS 8.8
EPSS 0.00054
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0