Beveiligingsadvies

CVE-2025-40665

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-05-26 12:48:08
Laatst bijgewerkt 2025-05-27 14:23:12
Toegewezen door INCIBE
CVSS-score 8.7
Status PUBLISHED

Beschrijving

Time-based blind SQL injection vulnerabilities in TCMAN's GIM v11. These allow an attacker to retrieve, create, update and delete databases through ArbolID parameter in /GIMWeb/PC/frmCorrectivosList.aspx.