VYPR

Gandia Integra Total

by Tesigandia

CVEs (6)

  • CVE-2025-41373HigAug 1, 2025
    risk 0.60cvss 8.8epss 0.01

    A SQL injection vulnerability has been found in Gandia Integra Total of TESI from version 2.1.2217.3 to v4.4.2236.1. The vulnerability allows an authenticated attacker to retrieve, create, update and delete databases through the 'idestudio' parameter in…

  • CVE-2025-41374HigAug 1, 2025
    risk 0.57cvss 8.8epss 0.01

    A SQL injection vulnerability has been found in Gandia Integra Total of TESI from version 2.1.2217.3 to v4.4.2236.1. The vulnerability allows an authenticated attacker to retrieve, create, update and delete databases through the 'idestudio' parameter in…

  • CVE-2025-41372HigAug 1, 2025
    risk 0.57cvss 8.8epss 0.01

    A SQL injection vulnerability has been found in Gandia Integra Total of TESI from version 2.1.2217.3 to v4.4.2236.1. The vulnerability allows an authenticated attacker to retrieve, create, update and delete databases through the 'idestudio' parameter in…

  • CVE-2025-41371HigAug 1, 2025
    risk 0.57cvss 8.8epss 0.01

    A SQL injection vulnerability has been found in Gandia Integra Total of TESI from version 2.1.2217.3 to v4.4.2236.1. The vulnerability allows an authenticated attacker to retrieve, create, update and delete databases through the 'idestudio' parameter in…

  • CVE-2025-41370HigAug 1, 2025
    risk 0.57cvss 8.8epss 0.01

    A SQL injection vulnerability has been found in Gandia Integra Total of TESI from version 2.1.2217.3 to v4.4.2236.1. The vulnerability allows an authenticated attacker to retrieve, create, update and delete databases through the 'idestudio' parameter in…

  • CVE-2025-41073MedOct 23, 2025
    risk 0.42cvss 6.5epss 0.00

    Path Traversal vulnerability in version 4.4.2236.1 of TESI Gandia Integra Total. This issue allows an authenticated attacker to download a ZIP file containing files from the server, including those located in parent directories (e.g., ..\..\..), by exploiting the…