Beveiligingsadvies

CVE-2025-40714

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-07-08 11:35:53
Laatst bijgewerkt 2025-07-10 10:13:15
Toegewezen door INCIBE
CVSS-score 9.3
Status PUBLISHED

Beschrijving

SQL injection vulnerability in versions prior to 4.7.0 of Quiter Gateway by Quiter. This vulnerability allows an attacker to retrieve, create, update and delete databases through the campo id_factura in /<Client>FacturaE/listado_facturas_ficha.jsp.