SQL Injection Vulnerability in Bacteriology Laboratory Reporting System by ViewLead Technology
CVE-2025-13046

8.7HIGH

What is CVE-2025-13046?

A SQL Injection vulnerability exists in the Bacteriology Laboratory Reporting System developed by ViewLead Technology. This flaw enables unauthenticated remote attackers to inject arbitrary SQL commands. As a result, attackers can potentially access sensitive database contents, leading to unauthorized data disclosure. Organizations using this system should apply necessary security measures to mitigate risks associated with this vulnerability.

Affected Version(s)

Bacteriology Laboratory Reporting System 0

References

CVSS V4

Score:
8.7
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-13046 : SQL Injection Vulnerability in Bacteriology Laboratory Reporting System by ViewLead Technology