Security Advisory
CVE-2025-10870
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
SQL injection vulnerability in DIAL's CentrosNet v2.64. Allows an attacker to retrieve, create, update, and delete databases by sending POST and GET requests with the 'ultralogin' parameter in '/centrosnet/ultralogin.php'.