PT-2025-39444 · Zenitel · Zenitel Icx510+1

CVE-2025-59814

·

Publicado

2025-09-25

·

Atualizado

2025-09-26

CVSS v3.1

8.8

Alta

VetorAV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Zenitel ICX500 and ICX510 Gateway (affected versions not specified)
Description The issue allows unauthorized access to the Billing Admin endpoint, potentially enabling malicious actors to read the entire contents of the Billing Admin database. The affected API endpoint is the 'Billing Admin' endpoint.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

SQL injection

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2025-12387
CVE-2025-59814

Produtos afetados

Zenitel Icx500
Zenitel Icx510