


Perceptive Security
SOC/SIEM Consultancy

Boolean-Based SQL Injection is a type of blind SQL injection where an attacker manipulates SQL queries by injecting Boolean conditions (TRUE or FALSE) into appl…
Published:
15 maart 2026 om 23:00:00
Alert date:
16 maart 2026 om 17:01:19
Source:
nvd.nist.gov
Web Technologies, Database & Storage
CVE-2025-62319 describes a Boolean-based SQL injection vulnerability that allows attackers to manipulate SQL queries by injecting Boolean conditions into application input fields. This is a type of blind SQL injection where the application responds differently based on whether injected conditions evaluate to true or false. Attackers can exploit this to inject arbitrary SQL into backend configuration queries. The vulnerability enables data extraction and potential database compromise without triggering visible errors or returning direct data output.
Technical details
Mitigation steps:
Affected products:
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2025-62319
https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0129410
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
