CVE-2025-48735
Severity CVSS v4.0:
Pending analysis
Type:
CWE-89
SQL Injection
Publication date:
23/05/2025
Last modified:
28/05/2025
Description
A SQL Injection issue in the request body processing in BOS IPCs with firmware 21.45.8.2.2_220219 before 21.45.8.2.3_230220 allows remote attackers to obtain sensitive information from the database via crafted input in the request body.
Impact
Base Score 3.x
4.30
Severity 3.x
MEDIUM



