Metrics
Affected Vendors & Products
Thu, 12 Jun 2025 16:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Advayasoftech
Advayasoftech gems Erp Portal |
|
CPEs | cpe:2.3:a:advayasoftech:gems_erp_portal:2.1:*:*:*:*:*:*:* | |
Vendors & Products |
Advayasoftech
Advayasoftech gems Erp Portal |
Tue, 20 May 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Sun, 18 May 2025 06:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability, which was classified as critical, was found in Advaya Softech GEMS ERP Portal 2.1. This affects an unknown part of the file /studentLogin/studentLogin.action. The manipulation of the argument userId leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. | |
Title | Advaya Softech GEMS ERP Portal studentLogin.action sql injection | |
Weaknesses | CWE-74 CWE-89 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-05-20T13:46:32.595Z
Reserved: 2025-05-16T19:04:39.744Z
Link: CVE-2025-4863

Updated: 2025-05-20T13:45:49.883Z

Status : Analyzed
Published: 2025-05-18T07:15:21.073
Modified: 2025-06-12T16:28:13.203
Link: CVE-2025-4863

No data.