YouDataSum CPAS Audit Management System <=v4.9 is vulnerable to SQL Injection in /cpasList/findArchiveReportByDah due to insufficient input validation. This allows remote unauthenticated attackers to execute arbitrary SQL commands via crafted input to the parameter. Successful exploitation could lead to unauthorized data access
Metrics
Affected Vendors & Products
References
History
Wed, 04 Feb 2026 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-89 | |
| Metrics |
cvssV3_1
|
Wed, 04 Feb 2026 12:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Youdatasum
Youdatasum cpas Audit Management System |
|
| Vendors & Products |
Youdatasum
Youdatasum cpas Audit Management System |
Tue, 03 Feb 2026 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | YouDataSum CPAS Audit Management System <=v4.9 is vulnerable to SQL Injection in /cpasList/findArchiveReportByDah due to insufficient input validation. This allows remote unauthenticated attackers to execute arbitrary SQL commands via crafted input to the parameter. Successful exploitation could lead to unauthorized data access | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-02-04T15:40:10.030Z
Reserved: 2025-08-17T00:00:00.000Z
Link: CVE-2025-57529
Updated: 2026-02-04T15:40:05.178Z
Status : Awaiting Analysis
Published: 2026-02-03T18:16:13.403
Modified: 2026-02-04T16:34:21.763
Link: CVE-2025-57529
No data.