BeeS Software Solutions BET Portal contains an SQL injection vulnerability in the login functionality of affected sites. The vulnerability enables arbitrary SQL commands to be executed on the backend database.
References
| Link | Resource |
|---|---|
| https://afnaan.me/cve/cve-2025-14598 | Third Party Advisory |
| https://cloudilyaerp.com/ | Product |
| https://github.com/Afnaan-Ahmed/CVE-2025-14598 | Exploit Third Party Advisory |
| https://www.kb.cert.org/vuls/id/361400 | Third Party Advisory |
Configurations
History
No history.
Information
Published : 2026-01-09 13:15
Updated : 2026-06-17 08:36
NVD link : CVE-2025-14598
Mitre link : CVE-2025-14598
CVE.ORG link : CVE-2025-14598
JSON object : View
Products Affected
cloudilyaerp
- bet_e-portal
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
