PT-2025-33175 · Metagauss · Profilegrid

Trương Hữu Phúc

·

Published

2025-08-14

·

Updated

2025-08-14

·

CVE-2025-49033

CVSS v3.1

8.5

High

VectorAV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:L
Name of the Vulnerable Software and Affected Versions: Metagauss ProfileGrid versions through 5.9.5.3
Description: An improper neutralization of special elements used in an SQL command ('SQL Injection') vulnerability exists in Metagauss ProfileGrid, allowing for blind SQL injection.
Recommendations: Update Metagauss ProfileGrid to a version later than 5.9.5.3.

Fix

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2025-49033

Affected Products

Profilegrid