PT-2025-42495 · Unknown · Centrax Open Psim

Published

2025-10-16

·

Updated

2025-10-16

·

CVE-2025-56699

CVSS v3.1

5.4

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Centrax Open PSIM version 6.1
Description An unauthenticated user can execute arbitrary SQL commands through the sender parameter in the cmd component. This is due to a SQL injection issue.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

SQL injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-56699

Affected Products

Centrax Open Psim