Critical severity9.8NVD Advisory· Published Feb 27, 2025· Updated Apr 15, 2026
CVE-2025-1751
CVE-2025-1751
Description
A SQL Injection vulnerability has been found in Ciges 2.15.5 from ATISoluciones. This vulnerability allows an attacker to retrieve, create, update and delete database via $idServicio parameter in /modules/ajaxBloqueaCita.php endpoint.
Affected products
1- Range: = 2.15.5
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.