go to Content
:::

TWCERT/CC Taiwan Computer Emergency Response Team/Coordination Center

:::
Date:
Font-stze:

EBM Technologies EBM Maintenance Center - SQL injection

TVN ID TVN-202503004
CVE ID CVE-2025-2585
CVSS 8.8 (High)
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Affected Products EBM Maintenance Center before version 25.04.31435
Description EBM Maintenance Center From EBM Technologies has a SQL Injection vulnerability, allowing remote attackers with regular privileges to inject arbitrary SQL commands to read, modify, and delete database contents.
Solution Update to version 25.04.31435 or later.
Credit Security member
Public Date 2025-03-21
Top