All intelligence
// vulnerability record
cached · NVD via COSMOS syncCVE-2019-25704
HIGHpublished 2026-04-05 21:16 UTC · 4 months ago · modified 2026-06-17 02:33 UTC
8.8
CVSS / 10
// description
Kados R10 GreenBee contains an SQL injection vulnerability that allows attackers to manipulate database queries by injecting SQL code through the filter_user_mail parameter. Attackers can send crafted requests with malicious SQL statements to extract sensitive database information or modify data.
// weaknesses (CWE)
- CWE-89