CVE-2025-14603EPSS p30.3%
CVE-2025-14603CVE-2025-14603
Description
The application component processes user-supplied parameters insecurely, passing them into SQL queries. This can enable blind SQL injection, potentially exposing database contents or causing the application to become unresponsive.
Apply patch from vendor https://vsdesk.ru/ . Versions 14.0101 and on have the patch.
Scoring
| EPSS | 0.39% probability of exploitation · percentile 30.3% · 2026-10-05T12:00:23Z |
| Last modified | 2026-09-29 |