Vulnerability Description
SQL Injection vulnerability in Alpes Recherche et Developpement ARD GEC en Lign before v.2025-04-23 allows a remote attacker to escalate privileges via the GET parameters in index.php
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ard | Gec En Ligne | < 2025-04-23 |
Related Weaknesses (CWE)
References
- http://alpes.comBroken Link
- http://ard.comBroken Link
- https://github.com/0xZeroSec/CVE-2025-55885ExploitThird Party Advisory
- https://services.ard.fr/index.phpProduct
FAQ
What is CVE-2025-55885?
CVE-2025-55885 is a vulnerability with a CVSS score of 6.3 (MEDIUM). SQL Injection vulnerability in Alpes Recherche et Developpement ARD GEC en Lign before v.2025-04-23 allows a remote attacker to escalate privileges via the GET parameters in index.php
How severe is CVE-2025-55885?
CVE-2025-55885 has been rated MEDIUM with a CVSS base score of 6.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-55885?
Check the references section above for vendor advisories and patch information. Affected products include: Ard Gec En Ligne.