Search Results (1 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2019-25534 1 Netartmedia 1 Php Car Dealer 2026-03-13 8.2 High
Netartmedia PHP Car Dealer contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the features[] parameter. Attackers can submit POST requests to index.php with crafted SQL payloads in the features[] parameter to extract sensitive database information or manipulate database queries.