Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-4291 | SQL injection in SLIMS v.9.6.1 allows a remote attacker to escalate privileges via the month parameter in the visitor_report_day.php component. |
Thu, 01 May 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Slims senayan Library Management System
|
|
| CPEs | cpe:2.3:a:slims:senayan_library_management_system:9.6.1:*:*:*:*:*:*:* | |
| Vendors & Products |
Slims slims 9 Bulian
|
Slims senayan Library Management System
|
Tue, 25 Mar 2025 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Slims
Slims slims 9 Bulian |
|
| CPEs | cpe:2.3:a:slims:slims_9_bulian:9.6.1:*:*:*:*:*:*:* | |
| Vendors & Products |
Slims
Slims slims 9 Bulian |
Tue, 25 Feb 2025 08:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 24 Feb 2025 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-89 | |
| Metrics |
cvssV3_1
|
Mon, 24 Feb 2025 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | SQL injection in SLIMS v.9.6.1 allows a remote attacker to escalate privileges via the month parameter in the visitor_report_day.php component. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-02-24T16:50:42.371Z
Reserved: 2025-02-07T00:00:00.000Z
Link: CVE-2025-26200
Updated: 2025-02-24T16:50:16.388Z
Status : Analyzed
Published: 2025-02-24T17:15:14.273
Modified: 2025-05-01T16:52:41.387
Link: CVE-2025-26200
No data.
OpenCVE Enrichment
No data.
EUVD