SQL Injection Vulnerability in Sunbird Power IQ API
CVE-2025-55703

2.5LOW

Key Information:

Vendor

Sunbird

Status
Vendor
CVE Published:
15 December 2025

What is CVE-2025-55703?

An error-based SQL injection vulnerability has been identified in the API of Sunbird Power IQ version 9.2.0. This security flaw arises from an outdated API endpoint that fails to apply necessary input validation to user-provided data, particularly when manipulating SQL queries. As a result, attackers may exploit this weakness to execute unauthorized SQL commands, potentially accessing sensitive data or compromising the integrity of the database. Sunbird has addressed this issue in version 9.2.1 by updating the API code to ensure safer handling of input values.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

References

CVSS V3.1

Score:
2.5
Severity:
LOW
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.