CVE-2019-25578 | phpTransformer 2016.9 GET GeneratePDF.php idnews sql injection (Exploit 46191 / EUVD-2019-19901)
A vulnerability identified as critical has been detected in phpTransformer 2016.9. This impacts an unknown function of the file GeneratePDF.php of the component GET Handler. The manipulation of the argument idnews leads to sql injection.
This vulnerability is documented as CVE-2019-25578. The attack can be initiated remotely. Additionally, an exploit exists.