SQL Injection vulnerability exists in GroupSession Free edition prior to ver5.3.0, GroupSession byCloud prior to ver5.3.3, and GroupSession ZION prior to ver5.3.2. If exploited, information stored in the database may be obtained or altered by an authenticated user.
Metrics
Affected Vendors & Products
References
History
Fri, 12 Dec 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 12 Dec 2025 09:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Groupsession
Groupsession groupsession Groupsession groupsession Bycloud Groupsession groupsession Zion |
|
| Vendors & Products |
Groupsession
Groupsession groupsession Groupsession groupsession Bycloud Groupsession groupsession Zion |
Fri, 12 Dec 2025 05:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | SQL Injection vulnerability exists in GroupSession Free edition prior to ver5.3.0, GroupSession byCloud prior to ver5.3.3, and GroupSession ZION prior to ver5.3.2. If exploited, information stored in the database may be obtained or altered by an authenticated user. | |
| Weaknesses | CWE-89 | |
| References |
| |
| Metrics |
cvssV3_0
|
Status: PUBLISHED
Assigner: jpcert
Published: 2025-12-12T05:02:38.764Z
Updated: 2025-12-12T20:36:24.896Z
Reserved: 2025-11-27T05:42:06.772Z
Link: CVE-2025-62192
Updated: 2025-12-12T20:23:52.021Z
Status : Awaiting Analysis
Published: 2025-12-12T05:16:10.950
Modified: 2025-12-12T15:17:31.973
Link: CVE-2025-62192
No data.