ID |
CVE-2025-56699
|
Sažetak |
SQL injection vulnerability in the cmd component of Base Digitale Group spa product Centrax Open PSIM version 6.1 allows an unauthenticated user to execute arbitrary SQL commands via the sender parameter. |
Reference |
|
CVSS |
Base: | 5.4 |
Impact: | 2.5 |
Exploitability: | 2.8 |
|
Pristup |
Vektor | Složenost | Autentikacija |
NETWORK |
LOW |
LOW |
|
Impact |
Povjerljivost | Cjelovitost | Dostupnost |
LOW |
LOW |
NONE |
|
CVSS vektor |
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N |
Zadnje važnije ažuriranje |
16-10-2025 - 20:15 |
Objavljeno |
16-10-2025 - 17:15 |