Junglewise Threat Intelligence

CVE-2018-25379: Collectric CMU SQL injection in lang parameter

CVE-2018-25379 · Severity: high · CVSS 8.2 · Published 2026-05-25

Executive brief

Collectric CMU is a controller device used to manage electrical systems such as car heaters and camping site power. A security flaw in its login interface allows unauthenticated attackers to interfere with database queries. This could lead to the theft of sensitive information from the device's database, potentially compromising the management of connected electrical infrastructure.

Technical details

A boolean-based and time-based blind SQL injection vulnerability exists in the 'lang' GET parameter of the Collectric CMU 1.0 login interface. The root cause is improper neutralization of special elements used in SQL commands within the PHP-based admin interface. An unauthenticated remote attacker can exploit this by sending specially crafted HTTP requests to the login page. Successful exploitation allows the attacker to extract sensitive data from the underlying MySQL database. This vulnerability affects all known versions up to 1.0, and public exploit code is available.

Affected products

  • Collectric CMU 1.0 and earlier

Timeline

  • 2018-09-15: disclosed: Vulnerability discovered and exploit published on Exploit-DB
  • 2026-05-25: advisory: CVE record published/updated via VulnCheck and NVD

References