CVE-2025-25181

⚠ KEVEPSS 72.1%

Advantive VeraCore SQL Injection Vulnerability

Added to CISA KEV: 3/10/2025

Description

Advantive VeraCore contains a SQL injection vulnerability in timeoutWarning.asp that allows a remote attacker to execute arbitrary SQL commands via the PmSess1 parameter.

Affected packages (0)

No package mapping in OSV.