PT-2026-1227 · Quanta Computer · Qoca Aim Ai Medical Cloud Platform

Published

2026-01-05

·

Updated

2026-01-05

·

CVE-2025-15239

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions QOCA aim AI Medical Cloud Platform (affected versions not specified)
Description The QOCA aim AI Medical Cloud Platform, developed by Quanta Computer, contains a SQL Injection flaw. This allows authenticated remote attackers to inject arbitrary SQL commands, potentially leading to unauthorized access and retrieval of database contents. The vulnerability impacts the platform's ability to securely handle database interactions. The API endpoint is not specified. The vulnerable parameter is not specified. The vulnerable function is not specified.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2025-15239

Affected Products

Qoca Aim Ai Medical Cloud Platform