CVE-2018-25180 - Maitra 1.7.2 SQL Injection and Database File Download

CVE-2018-25180 - Maitra 1.7.2 SQL Injection and Database File Download

CVE ID : CVE-2018-25180 Published : March 6, 2026, 12:19 p.m. | 39 minutes ago Description : Maitra 1.7.2 contains an sql injection vulnerability that allows authenticated attackers to execute arbitrary SQL queries by injecting malicious code through the mailid parameter in outmail and inmail modules. Attackers can also download the SQLite database file directly from the application directory to extract sensitive mail tracking data and credentials. Severity: 7.1 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
HIGH
Published
March 6, 2026
Impact: sql injection