CVE-2025-14255

Publication date

2025-12-08 07:43:22

Family

twcert

State

PUBLISHED

Description

Vitals ESP developed by Galaxy Software Services has a SQL Injection vulnerability, allowing authenticated remote attackers to inject arbitrary SQL commands to read database contents.