VYPR

CentrosNet

by DIAL

CVEs (1)

  • CVE-2025-10870CriNov 7, 2025
    risk 0.60cvss epss 0.00

    SQL injection vulnerability in DIAL's CentrosNet v2.64. Allows an attacker to retrieve, create, update, and delete databases by sending POST and GET requests with the 'ultralogin' parameter in '/centrosnet/ultralogin.php'.