CYBERHAWK / CVE / CVE-2018-25428

CVE-2018-25428

Paroiciel

HIGH CVSS 8.2 other

The flaw

SQL injection vulnerability allows unauthenticated attackers to execute arbitrary SQL queries through the tRecIdListe parameter.

What to do

Update to version newer than 11.20 or sanitize tRecIdListe parameter

▸ Scan my repo for CVE-2018-25428

References

First seen 2026-06-05 · Tracked by PickBits CyberHawk · Weekly CVE digest