Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-7801

Опубликовано: 18 июл. 2025
Источник: nvd
CVSS3: 7.3
CVSS2: 7.5
EPSS Низкий

Описание

A vulnerability has been found in BossSoft CRM 6.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /crm/module/HNDCBas_customPrmSearchDtl.jsp. The manipulation of the argument cstid leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.

EPSS

Процентиль: 10%
0.00037
Низкий

7.3 High

CVSS3

7.5 High

CVSS2

Дефекты

CWE-74

Связанные уязвимости

CVSS3: 7.3
github
14 дней назад

A vulnerability has been found in BossSoft CRM 6.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /crm/module/HNDCBas_customPrmSearchDtl.jsp. The manipulation of the argument cstid leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.

EPSS

Процентиль: 10%
0.00037
Низкий

7.3 High

CVSS3

7.5 High

CVSS2

Дефекты

CWE-74