Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
8.8

Netartmedia PHP Dating Site Allows Sensitive Data Exposure

CVE-2019-25535
Summary

The Netartmedia PHP Dating Site has a security flaw that can expose sensitive information. Anyone can access this information without needing a login if they know how to exploit the vulnerability. To protect your site and users, update the software to the latest version and make sure to sanitize user input to prevent similar issues.

Original title
Netartmedia PHP Dating Site contains a SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the Email parameter. Attackers ...
Original description
Netartmedia PHP Dating Site contains a SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the Email parameter. Attackers can send POST requests to loginaction.php with time-based SQL injection payloads in the Email field to extract sensitive database information.
nvd CVSS3.1 8.2
nvd CVSS4.0 8.8
Vulnerability type
CWE-89 SQL Injection
Published: 12 Mar 2026 · Updated: 13 Mar 2026 · First seen: 12 Mar 2026