BeeS Software Solutions BET Portal contains an SQL injection vulnerability in the login functionality of affected sites. The vulnerability enables arbitrary SQL commands to be executed on the backend database.
References
| Link | Resource |
|---|---|
| https://afnaan.me/cve/cve-2025-14598 | Third Party Advisory |
| https://cloudilyaerp.com/ | Product |
| https://github.com/Afnaan-Ahmed/CVE-2025-14598 | Exploit Third Party Advisory |
| https://www.kb.cert.org/vuls/id/361400 | Third Party Advisory |
Configurations
History
10 Feb 2026, 20:29
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:a:cloudilyaerp:bet_e-portal:-:*:*:*:*:*:*:* | |
| First Time |
Cloudilyaerp bet E-portal
Cloudilyaerp |
|
| References | () https://afnaan.me/cve/cve-2025-14598 - Third Party Advisory | |
| References | () https://cloudilyaerp.com/ - Product | |
| References | () https://github.com/Afnaan-Ahmed/CVE-2025-14598 - Exploit, Third Party Advisory | |
| References | () https://www.kb.cert.org/vuls/id/361400 - Third Party Advisory |
09 Jan 2026, 16:16
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.8 |
| CWE | CWE-89 |
09 Jan 2026, 14:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
09 Jan 2026, 13:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-01-09 13:15
Updated : 2026-02-10 20:29
NVD link : CVE-2025-14598
Mitre link : CVE-2025-14598
CVE.ORG link : CVE-2025-14598
JSON object : View
Products Affected
cloudilyaerp
- bet_e-portal
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
