PT-2026-33424 · Sparx Systems Pty · Sparx Pro Cloud Server

Published

2026-04-17

·

Updated

2026-04-17

·

CVE-2025-15623

CVSS v4.0

9.3

Critical

AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:N/SC:L/SI:L/SA:N/S:P/AU:Y/V:C/RE:M/U:Red
Exposure of Private Personal Information to an Unauthorized Actor, : Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Sparx Systems Pty Ltd. Sparx Pro Cloud Server.
Unauthenticated user can retrieve database password in plaintext in certain situations

Fix

Weakness Enumeration

Related Identifiers

CVE-2025-15623

Affected Products

Sparx Pro Cloud Server