Global Interactive Design Media Software SQL Injection Vulnerability Allowing Command Line Execution

Vulnerability

A SQL injection vulnerability has been identified in the Content Management System (CMS) developed by Global Interactive Design Media Software Inc. This vulnerability allows for improper neutralization of special elements used in SQL commands, leading to command line execution. The issue affects CMS versions through July 21, 2025.

Impact

Exploitation of this vulnerability could allow attackers to execute commands on the command line via the SQL injection flaw.

Remediation

Users are advised to upgrade to the version released on or after July 21, 2025.

Added: Jan 29, 2026, 3:21 PM
Updated: Jan 29, 2026, 4:41 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
2.5
exploitability
7.0
remediation
0.0
relevance
2.5
threat
0.0
urgency
2.9
incentive
4.2

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.