Vulnerabilities (CVE)

Filtered by vendor Deerwms Subscribe
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-8125 1 Deerwms 1 Deer-wms-2 2025-08-28 6.5 MEDIUM 6.3 MEDIUM
A vulnerability was found in deerwms deer-wms-2 up to 3.3. It has been rated as critical. Affected by this issue is some unknown functionality of the file /system/role/authUser/allocatedList. The manipulation of the argument params[dataScope] leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.