
CVE-2019-25260 OXID eShop versions 6.x prior to 6.3.4 contains a SQL injection vulnerability in the 'sorting' parameter that allows attackers to insert malicious database content. A… https://www.cve.org/CVERecord?id=CVE-2019-25260
Post summary
The post announces a SQL injection flaw in OXID eShop versions prior to 6.3.4, detailing the vulnerability but providing no PoC, exploit, active‑exploitation evidence, or patch information.
