CVE-2025-1811

CVSS 3.1 Score 7.3 of 10 (high)

Details

Published Mar 2, 2025
Updated: Mar 3, 2025
CWE ID 74
CWE ID 89

Summary

CVE-2025-1811 is a critical vulnerability affecting AT Software Solutions ATSVD up to version 3.4.1. This issue lies in an unknown functionality of the /login.aspx file's Login Endpoint. An attacker can exploit this sql injection vulnerability by manipulating the txtUsuario argument, which can be done remotely. The exploit for this vulnerability has been made public, increasing the risk of attacks. Upgrading to version 3.4.2 is the recommended solution to mitigate this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share