216.73.216.6

CVE-2025-52425

· Published 07/11/2025 16:15 · Modified 14/11/2025 20:12

Labels: CVE-2025-52425 2025-11-07CVE-2025-52425CWE-89[email protected]

Essential information

Published
07/11/2025 16:15
Modified
14/11/2025 20:12
Author
Creator
CVSS
9.5 CRITICAL (v3) 9.5 CRITICAL (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

An SQL injection vulnerability has been reported to affect QuMagie. A remote attacker can exploit the vulnerability to execute unauthorized code or commands. We have already fixed the vulnerability in the following versions: QuMagie 2.7.0 and later

NVD status

Status
Analyzed — CVE has had analysis completed and all data associations made.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
qnap / qumagie cpe:2.3:a:qnap:qumagie:*:*:*:*:*:*:*:*

References