All intelligence
// vulnerability record
cached · NVD via COSMOS syncCVE-2019-25698
HIGHpublished 2026-04-05 21:16 UTC · 4 months ago · modified 2026-06-17 02:32 UTC
8.8
CVSS / 10
// description
Kados R10 GreenBee contains an SQL injection vulnerability that allows attackers to manipulate database queries by injecting SQL code through the id_to_delete parameter. Attackers can send crafted requests with malicious SQL statements in the id_to_delete field to extract or modify sensitive database information.
// weaknesses (CWE)
- CWE-89