PT-2025-43169 · Themefic · Hydra Booking
CVE-2025-49378
·
Publicado
2025-10-22
·
Atualizado
2025-11-18
CVSS v3.1
8.5
Alta
| Vetor | AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:L |
Name of the Vulnerable Software and Affected Versions
Themefic Hydra Booking versions through 1.1.10
Description
The software contains a flaw due to improper neutralization of special elements within SQL commands, leading to a potential SQL Injection issue. This could allow for unauthorized database access or manipulation.
Recommendations
Versions prior to 1.1.10 should be updated.
Correção
SQL injection
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Hydra Booking