Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Update to version 29.50 or later
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 18 Nov 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:edetw:u-office_force:*:*:*:*:*:*:*:* |
Mon, 10 Nov 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 10 Nov 2025 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Edetw
Edetw u-office Force |
|
| Vendors & Products |
Edetw
Edetw u-office Force |
Mon, 10 Nov 2025 02:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | U-Office Force developed by e-Excellence has a SQL Injection vulnerability, allowing authenticated remote attacker to inject arbitrary SQL commands to read, modify, and delete database contents. | |
| Title | e-Excellence|U-Office Force - SQL Injection | |
| Weaknesses | CWE-89 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2025-11-10T16:44:10.324Z
Reserved: 2025-11-07T11:10:50.780Z
Link: CVE-2025-12864
Updated: 2025-11-10T16:44:06.582Z
Status : Analyzed
Published: 2025-11-10T03:15:42.017
Modified: 2025-11-18T18:04:46.590
Link: CVE-2025-12864
No data.
OpenCVE Enrichment
Updated: 2025-11-10T09:33:14Z