First published: Fri Mar 21 2025(Updated: )
EBM Maintenance Center From EBM Technologies has a SQL Injection vulnerability, allowing remote attackers with regular privileges to inject arbitrary SQL commands to read, modify, and delete database contents.
Credit: twcert@cert.org.tw
Affected Software | Affected Version | How to fix |
---|---|---|
EBM Maintenance Center |
Update to version 25.04.31435 or later.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-2585 has a high severity rating due to the potential for unauthorized access to sensitive database information through SQL injection.
To fix CVE-2025-2585, ensure that input validation and parameterized queries are implemented to prevent SQL injection.
CVE-2025-2585 affects users of the EBM Technologies EBM Maintenance Center software.
The potential impacts of CVE-2025-2585 include unauthorized database access, data manipulation, and data deletion.
Yes, CVE-2025-2585 can be exploited remotely by attackers with regular user privileges.