NONE · 0

CVE-2025-14603

The application component processes user-supplied parameters insecurely, passing them into SQL queries. This can enable blind SQL injection, potentially exposing database contents or causing the appli...

Vulnerability Description

The application component processes user-supplied parameters insecurely, passing them into SQL queries. This can enable blind SQL injection, potentially exposing database contents or causing the application to become unresponsive.  Apply patch from vendor https://vsdesk.ru/ . Versions 14.0101 and on have the patch.

References

FAQ

What is CVE-2025-14603?

CVE-2025-14603 is a documented vulnerability. The application component processes user-supplied parameters insecurely, passing them into SQL queries. This can enable blind SQL injection, potentially exposing database contents or causing the appli...

How severe is CVE-2025-14603?

CVSS scoring is not yet available for CVE-2025-14603. Check NVD for updates.

Is there a patch for CVE-2025-14603?

Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.