Metrics
Affected Vendors & Products
Solution
The vulnerability has been fixed by the TESI team in version 4.4.2431.5.
Workaround
No workaround given by the vendor.
Fri, 01 Aug 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Fri, 01 Aug 2025 12:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A SQL injection vulnerability has been found in Gandia Integra Total of TESI from version 2.1.2217.3 to v4.4.2236.1. The vulnerability allows an authenticated attacker to retrieve, create, update and delete databases through the 'idestudio' parameter in /encuestas/integraweb_v4/integra/html/view/acceso.php | |
Title | SQL injection vulnerability in Gandia Integra Total | |
Weaknesses | CWE-89 | |
References |
| |
Metrics |
cvssV4_0
|

Status: PUBLISHED
Assigner: INCIBE
Published:
Updated: 2025-08-01T13:39:24.925Z
Reserved: 2025-04-16T09:57:06.080Z
Link: CVE-2025-41371

Updated: 2025-08-01T13:38:39.146Z

Status : Awaiting Analysis
Published: 2025-08-01T13:15:26.497
Modified: 2025-08-04T15:06:15.833
Link: CVE-2025-41371

No data.

No data.