Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in I Thirteen Web Solution Email Subscription Popup allows Blind SQL Injection. This issue affects Email Subscription Popup: from n/a through 1.2.23.
No PoCs from references.
- https://github.com/ARPSyndicate/cve-scores
- https://github.com/DoTTak/CVE-2025-24587
- https://github.com/GhostTroops/TOP
- https://github.com/cyb3r-w0lf/nuclei-template-collection
- https://github.com/nomi-sec/PoC-in-GitHub