CVE-2025-40671
26.05.2025, 10:15
SQL injection vulnerability in AES Multimedia's Gestnet v1.07. This vulnerability allows an attacker to retrieve, create, update and delete databases via the fk_remoto_central parameter on the /webservices/articles.php endpoint.
Awaiting analysis
This vulnerability is currently awaiting analysis.