SQL Injection Vulnerability in Aykome License Tracking System by Cats Information Technology
CVE-2025-6919

9.8CRITICAL

What is CVE-2025-6919?

The Aykome License Tracking System developed by Cats Information Technology is susceptible to an SQL Injection vulnerability, which allows attackers to manipulate SQL queries by injecting malicious code through the application. If exploited, this weakness can lead to unauthorized access to sensitive database information. It is crucial for users of Aykome License Tracking System, prior to version 06.10.2025, to implement immediate security measures to mitigate the risk posed by this vulnerability.

Affected Version(s)

Aykome License Tracking System 0

References

CVSS V3.1

Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Hasan Yasin Yasar
Yusuf Melih Daskiran
.
CVE-2025-6919 : SQL Injection Vulnerability in Aykome License Tracking System by Cats Information Technology