CVE-2025-59814
Severity CVSS v4.0:
Pending analysis
Type:
CWE-89
SQL Injection
Publication date:
25/09/2025
Last modified:
26/09/2025
Description
This vulnerability allows malicious actors to gain unauthorized access to the Zenitel ICX500 and ICX510 Gateway Billing Admin endpoint, enabling them to read the entire contents of the Billing Admin database.
Impact
Base Score 3.x
8.80
Severity 3.x
HIGH



