CVE-2025-3893
Severity CVSS v4.0:
HIGH
Type:
CWE-89
SQL Injection
Publication date:
23/05/2025
Last modified:
23/05/2025
Description
While editing pages managed by MegaBIP a user with high privileges is prompted to give a reasoning for performing this action. Input provided by the the user is not sanitized, leading to SQL Injection vulnerability. <br />
Version 5.20 of MegaBIP fixes this issue.
Impact
Base Score 4.0
8.60
Severity 4.0
HIGH



