A vulnerability classified as critical was found in itsourcecode Content Management System 1.0. This vulnerability affects unknown code of the file /admin/update_main_topic_img.php?topic_id=529. The manipulation of the argument stopic_id leads to sql injection.

This vulnerability was named CVE-2025-4311. The attack can be initiated remotely. Furthermore, there is an exploit available.