PT-2025-48114 · Db Elettronica Telecomunicazioni Spa · Mozart Fm Transmitter
Abdul Mhanni
·
Published
2025-11-26
·
Updated
2025-12-03
·
CVE-2025-66260
CVSS v4.0
7.2
High
| Vector | AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:L/VA:H/SC:L/SI:N/SA:N |
Name of the Vulnerable Software and Affected Versions
DB Electronica Telecomunicazioni S.p.A. Mozart FM Transmitter versions 30, 50, 100, 300, 500, 1000, 2000, 3000, 3500, 6000, 7000
Description
The software is susceptible to a SQL injection issue through the
status sql.php endpoint. The endpoint builds SQL UPDATE queries by directly combining user-supplied sw1 and sw2 parameters without proper sanitization or the use of parameterized queries. While PostgreSQL's pg exec function limits stacked queries, attackers can still inject subqueries to extract data and utilize detailed error messages for system information gathering.Recommendations
Versions 30, 50, 100, 300, 500, 1000, 2000, 3000, 3500, 6000, and 7000 should be updated to a version that properly sanitizes user input or utilizes parameterized queries when interacting with the database. As a temporary workaround, consider restricting access to the
status sql.php endpoint until a patch is available.Exploit
Fix
SQL injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Mozart Fm Transmitter