Exploit for CVE-2025-11252

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Signum Technology Promotion and Training Inc. Windesk.Fm allows SQL Injection.This issue affects windesk.Fm: before v2.3.4.
NOTE:
The vendor patched the vulnerability after the CVE was published.

Published: 2026-02-27

CVSS: 9.8

CVSS Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Download Exploit for CVE-2025-11252 here:

Use Tor Browser to access .onion site.

https://sonitex.com/exploit-232-cve-2026-25785/

https://sonitex.com/exploit-420-cve-2026-2628/

https://sonitex.com/exploit-266-cve-2026-25959/