Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 05 Feb 2026 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:explorance:blue:*:*:*:*:*:*:*:* |
Thu, 29 Jan 2026 10:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Explorance
Explorance blue |
|
| Vendors & Products |
Explorance
Explorance blue |
Wed, 28 Jan 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Wed, 28 Jan 2026 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Explorance Blue versions prior to 8.14.9 contain a SQL injection vulnerability caused by insufficient validation of user input in a web application endpoint. An attacker can supply crafted input that is executed as part of backend database queries. The issue is exploitable without authentication, significantly raising the risk. | |
| Title | SQL Injection Vulnerability in Explorance Blue | |
| Weaknesses | CWE-89 | |
| References |
|
Status: PUBLISHED
Assigner: Mandiant
Published:
Updated: 2026-01-28T18:36:16.117Z
Reserved: 2025-08-19T19:08:41.742Z
Link: CVE-2025-57792
Updated: 2026-01-28T18:36:03.210Z
Status : Analyzed
Published: 2026-01-28T18:16:49.463
Modified: 2026-02-05T17:01:13.710
Link: CVE-2025-57792
No data.
OpenCVE Enrichment
Updated: 2026-01-29T09:09:22Z