CVE-2025-49853

ControlID iDSecure On-premises versions 4.7.48.0 and prior are vulnerable to SQL injections which could allow an attacker to leak arbitrary information and insert arbitrary SQL syntax into SQL queries.
Configurations

No configuration.

History

27 Jun 2025, 18:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.1

26 Jun 2025, 18:58

Type Values Removed Values Added
Summary
  • (es) Las versiones 4.7.48.0 y anteriores de ControlID iDSecure On-premises son vulnerables a inyecciones de SQL que podrían permitir a un atacante filtrar información arbitraria e insertar sintaxis SQL arbitraria en consultas SQL.

24 Jun 2025, 20:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-06-24 20:15

Updated : 2025-06-27 18:15


NVD link : CVE-2025-49853

Mitre link : CVE-2025-49853

CVE.ORG link : CVE-2025-49853


JSON object : View

Products Affected

No product.

CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')