Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Update to version 29.50 or later.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 18 Nov 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:edetw:u-office_force:*:*:*:*:*:*:*:* |
Mon, 10 Nov 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 10 Nov 2025 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Edetw
Edetw u-office Force |
|
| Vendors & Products |
Edetw
Edetw u-office Force |
Mon, 10 Nov 2025 02:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | U-Office Force developed by e-Excellence has a SQL Injection vulnerability, allowing authenticated remote attacker to inject arbitrary SQL commands to read, modify, and delete database contents. | |
| Title | e-Excellence|U-Office Force - SQL Injection | |
| Weaknesses | CWE-89 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2025-11-10T16:32:32.423Z
Reserved: 2025-11-07T11:10:52.274Z
Link: CVE-2025-12865
Updated: 2025-11-10T16:32:28.339Z
Status : Analyzed
Published: 2025-11-10T03:15:42.280
Modified: 2025-11-18T18:04:27.180
Link: CVE-2025-12865
No data.
OpenCVE Enrichment
Updated: 2025-11-10T09:33:09Z