HIGH
eregistrasi-kejuaraan-silat
CVE published 2026-05-29
CVE-2018-25385
CVE-2018-25385 documents an unauthenticated SQL injection vulnerability in E-Registrasi Pencak Silat version 18.10, a tournament registration application for the Indonesian martial art Pencak Silat. The flaw resides in the `id_partai` parameter of `monitor_nilai.php`, which fails to properly sanitize user-supplied input before incorporating it into SQL queries. Attackers can exploit this weakness via craf [truncated]