Beveiligingsadvies

CVE-2025-41019

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-10-16 07:56:47
Laatst bijgewerkt 2025-10-16 15:36:56
Toegewezen door INCIBE
CVSS-score 9.3
Status PUBLISHED

Beschrijving

SQL injection in Sergestec's SISTICK v7.2. This vulnerability allows an attacker to retrieve, create, update, and delete databases through the 'id' parameter in '/index.php?view=ticket_detail'.