CVE-2025-41019

Publication date

2025-10-16 07:56:47

Family

INCIBE

State

PUBLISHED

Description

SQL injection in Sergestecs SISTICK v7.2. This vulnerability allows an attacker to retrieve, create, update, and delete databases through the id parameter in /index.php?view=ticket_detail.