Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-26630 | SQL Injection vulnerability in FoxCMS v1.2.6 and before allows a remote attacker to execute arbitrary code via the. file /DataBackup.php and the operation on the parameter id. |
Tue, 09 Sep 2025 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:foxcms:foxcms:*:*:*:*:*:*:*:* |
Thu, 04 Sep 2025 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Foxcms
Foxcms foxcms |
|
| Vendors & Products |
Foxcms
Foxcms foxcms |
Wed, 03 Sep 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-89 | |
| Metrics |
cvssV3_1
|
Wed, 03 Sep 2025 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | SQL Injection vulnerability in FoxCMS v1.2.6 and before allows a remote attacker to execute arbitrary code via the. file /DataBackup.php and the operation on the parameter id. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-09-03T20:03:55.308Z
Reserved: 2025-08-17T00:00:00.000Z
Link: CVE-2025-56435
Updated: 2025-09-03T20:03:50.236Z
Status : Analyzed
Published: 2025-09-03T16:15:40.047
Modified: 2025-09-09T15:59:26.683
Link: CVE-2025-56435
No data.
OpenCVE Enrichment
Updated: 2025-09-04T13:12:18Z
EUVD