CVE-2025-70981 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

CordysCRM 1.4.1 is vulnerable to SQL Injection in the employee list query interface (/user/list) via the departmentIds parameter.
Critical CVSS: 9.8

CVE-2025-70981

CordysCRM 1.4.1 is vulnerable to SQL Injection in the employee list query interface (/user/list) via the departmentIds parameter.
Vendor
Fit2cloud
Product
Cordys Crm
CWE
CWE-89
Yayın Tarihi
2026-02-12 18:16:08
Güncelleme
2026-02-18 19:54:25
Source Identifier
cve@mitre.org
KEV Date Added
-

Kategoriler

Referanslar