PT-2025-40980 · Unknown · Callvision Emergency Code

Mustafa Günel

·

Published

2025-10-07

·

Updated

2025-10-12

·

CVE-2025-0603

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Callvision Emergency Code versions prior to 3.0
Description A flaw exists in Callvision Emergency Code that allows for SQL Injection, including Blind SQL Injection. This issue could grant attackers full database access. The vulnerability is unauthenticated, meaning no login is required to exploit it.
Recommendations Update to version 3.0 or later.

Fix

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2025-0603

Affected Products

Callvision Emergency Code