CVE-2018-25257 | Adianti Framework 5.5.0 Profile Edit Endpoint SystemProfileForm Name sql injection (Exploit 46217 / EDB-46217)
A vulnerability described as critical has been identified in Adianti Framework 5.5.0. The impacted element is the function SystemProfileForm of the component Profile Edit Endpoint. The manipulation of the argument Name results in sql injection.
This vulnerability is reported as CVE-2018-25257. The attack can be launched remotely. Moreover, an exploit is present.