Vulnerability Description
A SQL injection vulnerability has been found in Gandia Integra Total of TESI from version 2.1.2217.3 to v4.4.2236.1. The vulnerability allows an authenticated attacker to retrieve, create, update and delete databases through the 'idestudio' parameter in /encuestas/integraweb[_v4]/integra/html/view/consultacuotasred.php.
Related Weaknesses (CWE)
References
FAQ
What is CVE-2025-41377?
CVE-2025-41377 is a documented vulnerability. A SQL injection vulnerability has been found in Gandia Integra Total of TESI from version 2.1.2217.3 to v4.4.2236.1. The vulnerability allows an authenticated attacker to retrieve, create, update and ...
How severe is CVE-2025-41377?
CVSS scoring is not yet available for CVE-2025-41377. Check NVD for updates.
Is there a patch for CVE-2025-41377?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.