Vulnerability Description
SQL injection vulnerability in the cmd component of Base Digitale Group spa product Centrax Open PSIM version 6.1 allows an unauthenticated user to execute arbitrary SQL commands via the sender parameter.
CVSS Score
MEDIUM
Related Weaknesses (CWE)
References
- https://basedigitale.com/integrated-security-solutions/security-asset-management
- https://github.com/MarioTesoro/vulnerability-research/tree/main/CVE-2025-56699
FAQ
What is CVE-2025-56699?
CVE-2025-56699 is a vulnerability with a CVSS score of 5.4 (MEDIUM). SQL injection vulnerability in the cmd component of Base Digitale Group spa product Centrax Open PSIM version 6.1 allows an unauthenticated user to execute arbitrary SQL commands via the sender parame...
How severe is CVE-2025-56699?
CVE-2025-56699 has been rated MEDIUM with a CVSS base score of 5.4/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-56699?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.