← Back

CVE-2025-67811

nvd nist
Published: Jan 9, 2026Modified: Feb 10, 2026

JSON object

Loading...
6.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
Exploitability: 3.9 / Impact: 2.5
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0 (Secondary)

Description

Area9 Rhapsode 1.47.3 allows SQL Injection via multiple API endpoints accessible to authenticated users. Insufficient input validation allows remote attackers to inject arbitrary SQL commands, resulting in unauthorized database access and potential compromise of sensitive data. Fixed in v.1.47.4 and beyond.

Affected (1)

1 product
Rhapsode
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 1.47.3

References (2)

Source: cve@mitre.org
Broken Link
Source: cve@mitre.org
Vendor Advisory

Timeline

No history available yet.