CVE-2025-41018

Publication date

2025-10-16 07:56:17

Family

INCIBE

State

PUBLISHED

Description

SQL injection in Sergestecs Exito v8.0. This vulnerability allows an attacker to retrieve, create, update, and delete databases through the cat parameter in /public.php.