Vulnerability Description
A SQL Injection Vulnerability in CentralSquare Community Development 19.5.7 allows attackers to inject SQL via the permit_no field.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Centralsquare | Community Development | 19.5.7 |
Related Weaknesses (CWE)
References
- https://centralsquare.comProduct
- https://machevalia.blog/blog/multiple-vulnerabilities-in-centralsquare-etrakit-aThird Party Advisory
FAQ
What is CVE-2025-64280?
CVE-2025-64280 is a vulnerability with a CVSS score of 9.8 (CRITICAL). A SQL Injection Vulnerability in CentralSquare Community Development 19.5.7 allows attackers to inject SQL via the permit_no field.
How severe is CVE-2025-64280?
CVE-2025-64280 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2025-64280?
Check the references section above for vendor advisories and patch information. Affected products include: Centralsquare Community Development.