We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.
Please see our statement on Data Privacy.
An error-based SQL Injection (SQLi) vulnerability in WebERP v4.15.2 allows attackers to execute arbitrary SQL command and extract sensitive data by injecting a crafted payload into the DEL form field in a POST request to /StockCounts.php
Reserved 2025-04-22 | Published 2025-05-15 | Updated 2025-05-15 | Assigner mitregithub.com/...CVEs/blob/main/WebERP/CVE-2025-46052 - SQLi.md
Support options