SQL Injection Vulnerability in Vitals ESP by Galaxy Software Services
CVE-2025-14254
7.1HIGH
What is CVE-2025-14254?
The Vitals ESP application developed by Galaxy Software Services contains an SQL injection flaw. This vulnerability enables authenticated remote attackers to exploit the application by injecting arbitrary SQL commands. Such actions can lead to unauthorized access to sensitive database contents, posing significant risks to the integrity and confidentiality of the data stored within.
Affected Version(s)
Vitals ESP 0 <= 6.3
