Metrics
Affected Vendors & Products
Fri, 26 Sep 2025 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Fri, 26 Sep 2025 11:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Zenitel
Zenitel icx500 Zenitel icx510 |
|
Vendors & Products |
Zenitel
Zenitel icx500 Zenitel icx510 |
Fri, 26 Sep 2025 06:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
cvssV3_1
|
cvssV3_1
|
Thu, 25 Sep 2025 19:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | This vulnerability allows attackers to directly query the underlying database, potentially retrieving all data stored in the Billing Admin database, including user credentials. User passwords are stored in plaintext, significantly increasing the severity of this issue. | |
Title | Authenticated Union based SQL-injection in the search input field | |
Weaknesses | CWE-89 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: NCSC-NL
Published: 2025-09-25T19:30:03.608Z
Updated: 2025-09-26T15:42:38.822Z
Reserved: 2025-09-22T10:23:28.574Z
Link: CVE-2025-59816

Updated: 2025-09-26T15:42:31.548Z

Status : Awaiting Analysis
Published: 2025-09-25T20:15:35.647
Modified: 2025-09-26T14:32:19.853
Link: CVE-2025-59816

No data.