Explorance Blue versions prior to 8.14.9 contain a SQL injection vulnerability caused by insufficient validation of user input in a web application endpoint. An attacker can supply crafted input that is executed as part of backend database queries. The issue is exploitable without authentication, significantly raising the risk.
Metrics
Affected Vendors & Products
References
History
Wed, 28 Jan 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Wed, 28 Jan 2026 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Explorance Blue versions prior to 8.14.9 contain a SQL injection vulnerability caused by insufficient validation of user input in a web application endpoint. An attacker can supply crafted input that is executed as part of backend database queries. The issue is exploitable without authentication, significantly raising the risk. | |
| Title | SQL Injection Vulnerability in Explorance Blue | |
| Weaknesses | CWE-89 | |
| References |
|
Status: PUBLISHED
Assigner: Mandiant
Published:
Updated: 2026-01-28T18:36:16.117Z
Reserved: 2025-08-19T19:08:41.742Z
Link: CVE-2025-57792
Updated: 2026-01-28T18:36:03.210Z
Status : Received
Published: 2026-01-28T18:16:49.463
Modified: 2026-01-28T19:16:20.860
Link: CVE-2025-57792
No data.
OpenCVE Enrichment
No data.