PT-2025-43169 · Themefic · Hydra Booking

CVE-2025-49378

·

Publicado

2025-10-22

·

Atualizado

2025-11-18

CVSS v3.1

8.5

Alta

VetorAV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:L
Name of the Vulnerable Software and Affected Versions Themefic Hydra Booking versions through 1.1.10
Description The software contains a flaw due to improper neutralization of special elements within SQL commands, leading to a potential SQL Injection issue. This could allow for unauthorized database access or manipulation.
Recommendations Versions prior to 1.1.10 should be updated.

Correção

SQL injection

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2025-49378

Produtos afetados

Hydra Booking