Medium severity6.5NVD Advisory· Published Dec 8, 2025· Updated Jun 17, 2026
CVE-2025-14255
CVE-2025-14255
Description
Vitals ESP developed by Galaxy Software Services has a SQL Injection vulnerability, allowing authenticated remote attackers to inject arbitrary SQL commands to read database contents.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Galaxy Software Services/Vitals ESPv5Range: 0
Patches
Vulnerability mechanics
References
2- www.twcert.org.tw/en/cp-139-10543-380bd-2.htmlnvdThird Party Advisory
- www.twcert.org.tw/tw/cp-132-10542-4c682-1.htmlnvdThird Party Advisory
News mentions
0No linked articles in our index yet.