PT-2025-34854 · Unknown · Preparecdexportjson.Pl

Maciej Kazulak

·

Published

2025-08-27

·

Updated

2025-08-27

·

CVE-2025-30059

CVSS v4.0

6.9

Medium

VectorAV:A/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions: PrepareCDExportJSON.pl (affected versions not specified)
Description: The getPerfServiceIds function within the PrepareCDExportJSON.pl service is susceptible to SQL injection. This allows for potential manipulation of database queries through crafted input.
Recommendations: As a temporary workaround, consider restricting access to the getPerfServiceIds function until a fix is available.

Fix

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2025-30059

Affected Products

Preparecdexportjson.Pl