CVE-2025-22710

CVSS 3.1 Score 7.6 of 10 (high)

Details

Published Jan 21, 2025
CWE ID 89

Summary

CVE-2025-22710 is a newly identified SQL Injection vulnerability affecting StoreApps Smart Manager. Hackers can exploit this issue by inserting malicious SQL commands, bypassing input validations, and executing blind SQL queries on the underlying database. This vulnerability, present in versions from n/a through 8.52.0, poses a significant risk as it allows attackers to gain unauthorized access to sensitive data or even modify it.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share