CVE-2025-67650
Gravedad CVSS v4.0:
ALTA
Tipo:
CWE-89
Neutralización incorrecta de elementos especiales usados en un comando SQL (Inyección SQL)
Fecha de publicación:
31/07/2026
Última modificación:
31/07/2026
Descripción
*** Pendiente de traducción *** An authenticated SQL injection vulnerability has been identified in multiple PHP Jabbers scripts. Improper neutralization of input provided by an authenticated user into parameters responsible for sorting functions allows an attacker to perform SQL Injection attacks.<br />
This issue was fixed in the versions specified in the affected products list.
Impacto
Puntuación base 4.0
8.60
Gravedad 4.0
ALTA



