PT-2025-49976 · Talentsoft · Talentsoft Unis

Akıner Kisa

·

Published

2025-12-09

·

Updated

2025-12-14

·

CVE-2025-12504

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions TalentSoft Software UNIS versions prior to 42321
Description A flaw exists in TalentSoft Software UNIS related to the improper handling of special characters within SQL queries, potentially allowing for SQL Injection. This issue could allow an attacker to manipulate database queries, potentially leading to unauthorized access, data modification, or disclosure.
Recommendations Update TalentSoft Software UNIS to version 42321 or later.

Fix

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2025-12504

Affected Products

Talentsoft Unis