CVE-2019-25643Disclosure

LOWCVSS 8.8 · HIGH

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

eNdonesia Portal v8.7 contains multiple SQL injection vulnerabilities that allow unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the bid parameter. Attackers can send GET requests to banners.php with crafted SQL payloads in the bid parameter to extract sensitive database information from the INFORMATION_SCHEMA tables.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-89

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Threat summary

  • 2 mentions across 1 observed day

What's happening

  • Technical details provided in 2 signals
  • Disclosure: 2 classified signals
  • 2 total mentions across 1 day

Deep dive

Activity timeline2 mentions / 1d
01122Mentions · 2026-03-24: 2Technical Details · 2026-03-24: 203-24
Signal classification1 categories
Disclosure
2100.0%
Referenced assets2 URLs
By indicator
Full discourse2 posts
  • CVE@CVEnew
    Disclosure

    CVE-2019-25643 eNdonesia Portal v8.7 contains multiple SQL injection vulnerabilities that allow unauthenticated attackers to execute arbitrary SQL queries by injecting malicious cod… https://www.cve.org/CVERecord?id=CVE-2019-25643

    Post summary

    The text announces that CVE-2019-25643 is a SQL-injection vulnerability in eNdonesia Portal v8.7, enabling unauthenticated attackers to run arbitrary SQL queries; no PoC, exploit tool, or patch is mentioned.

    00000148
    56.8K followersView on X
  • CyberDudeBivash® | Global Cybersecurity Company@cyberbivash
    Disclosure

    🚨 CYBERDUDEBIVASH SENTINEL APEX ALERT 🚨 Threat: CVE-2019-25643 - eNdonesia Portal v8.7 SQL Injection via banners.php Intel Report: https://ift.tt/uVOLxo0

    Post summary

    An alert was issued for CVE‑2019‑25643, a SQL injection flaw in eNdonesia Portal v8.7 affecting banners.php. The Intel Report link likely provides additional incident details.

    0000031
    286 followersView on X

Explore more