A vulnerability, which was classified as critical, was found in FoxCMS 1.2.5. This affects the function executeCommand of the file DataBackup.php. The manipulation leads to sql injection.

This vulnerability is uniquely identified as CVE-2025-45240. It is possible to initiate the attack remotely. There is no exploit available.