← All CVEs

CVE-2025-24290

critical · 9.9

Multiple Authenticated SQL Injection vulnerabilities found in UISP Application (Version 2.4.206 and earlier) could allow a malicious actor with low privileges to escalate privileges.

9.9
CVSS
0.3%
EPSS (exploit prob.)
25th
EPSS percentile
2025-06-29
Published

CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

Weaknesses

CWE-89

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2025-24290