First published: Sun Apr 27 2025(Updated: )
There is a SQL injection vulnerability in the GoldenDB database product. Attackers can inject commands to extract database information.
Credit: psirt@zte.com.cn
Affected Software | Affected Version | How to fix |
---|---|---|
ZTE GoldenDB |
6.1.03.11,7.2.01.01P1
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-46577 has a high severity rating due to its potential for attackers to exploit SQL injection to access sensitive database information.
To remediate CVE-2025-46577, update the GoldenDB database software to the latest version that includes SQL injection vulnerability patches.
CVE-2025-46577 affects users of the ZTE GoldenDB database product, particularly those running vulnerable versions.
CVE-2025-46577 is classified as a SQL injection vulnerability, allowing attackers to execute unauthorized database queries.
By exploiting CVE-2025-46577, attackers can extract sensitive database information, potentially leading to data breaches.