PT-2025-50877 · Unknown · Groupsession Bycloud+2
Published
2025-12-12
·
Updated
2026-02-17
·
CVE-2025-62192
CVSS v3.1
5.4
Medium
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
GroupSession versions prior to 5.3.0
GroupSession byCloud versions prior to 5.3.3
GroupSession ZION versions prior to 5.3.2
Description
A SQL Injection issue exists that could allow an authenticated user to obtain or alter information stored in the database.
Recommendations
Update GroupSession to version 5.3.0 or later.
Update GroupSession byCloud to version 5.3.3 or later.
Update GroupSession ZION to version 5.3.2 or later.
Fix
SQL injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Groupsession
Groupsession Zion
Groupsession Bycloud