CVE Database
/

CVE-2025-1981

Back to search

CVE-2025-1981

Published: Apr 16, 2025

Modified: Apr 16, 2025

PUBLISHED

Description

Improper neutralization of input provided by a low-privileged user into a file search functionality in Ready_'s Invoices module allows for SQL Injection attacks.

VendorProductVersions

Symfonia

Ready_

affected
7.0.0.0 - <= 7.19.39.23
affected
8.0.0.0 - <= 8.0.2.3

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now