Логотип exploitDog
bind:CVE-2025-40887
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-40887

Количество 2

Количество 2

nvd логотип

CVE-2025-40887

4 месяца назад

A SQL Injection vulnerability was discovered in the Alert functionality due to improper validation of an input parameter. An authenticated user with limited privileges can execute arbitrary SELECT SQL statements on the DBMS used by the web application, potentially exposing unauthorized data.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-6cxq-5qm4-rhpr

4 месяца назад

A SQL Injection vulnerability was discovered in the Alert functionality due to improper validation of an input parameter. An authenticated user with limited privileges can execute arbitrary SELECT SQL statements on the DBMS used by the web application, potentially exposing unauthorized data.

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-40887

A SQL Injection vulnerability was discovered in the Alert functionality due to improper validation of an input parameter. An authenticated user with limited privileges can execute arbitrary SELECT SQL statements on the DBMS used by the web application, potentially exposing unauthorized data.

CVSS3: 5.3
0%
Низкий
4 месяца назад
github логотип
GHSA-6cxq-5qm4-rhpr

A SQL Injection vulnerability was discovered in the Alert functionality due to improper validation of an input parameter. An authenticated user with limited privileges can execute arbitrary SELECT SQL statements on the DBMS used by the web application, potentially exposing unauthorized data.

CVSS3: 5.3
0%
Низкий
4 месяца назад

Уязвимостей на страницу