CVE-2025-15625

Unauthenticated user is able to execute arbitrary SQL commands in Sparx Pro Cloud Server database in certain cases.
Configurations

Configuration 1 (hide)

cpe:2.3:a:sparxsystems:pro_cloud_server:6.0.163:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-04-17 09:16

Updated : 2026-06-17 08:38


NVD link : CVE-2025-15625

Mitre link : CVE-2025-15625

CVE.ORG link : CVE-2025-15625


JSON object : View

Products Affected

sparxsystems

  • pro_cloud_server
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

CWE-200

Exposure of Sensitive Information to an Unauthorized Actor