This vulnerability allows malicious actors to gain unauthorized access to the Zenitel ICX500 and ICX510 Gateway Billing Admin endpoint, enabling them to read the entire contents of the Billing Admin database.
Metrics
Affected Vendors & Products
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Thu, 25 Sep 2025 19:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | This vulnerability allows malicious actors to gain unauthorized access to the Zenitel ICX500 and ICX510 Gateway Billing Admin endpoint, enabling them to read the entire contents of the Billing Admin database. | |
Title | Unauthenticated SQL-injection in password field | |
Weaknesses | CWE-89 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: NCSC-NL
Published:
Updated: 2025-09-25T19:29:34.809Z
Reserved: 2025-09-22T10:23:28.574Z
Link: CVE-2025-59814

No data.

Status : Received
Published: 2025-09-25T20:15:35.357
Modified: 2025-09-25T20:15:35.357
Link: CVE-2025-59814

No data.

No data.