CVE-2025-15625
Unauthenticated execution of arbitrary SQL queries in Sparx Pro Cloud Server
Unauthenticated user is able to execute arbitrary SQL commands in Sparx Pro Cloud Server database in certain cases.
CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/S:P/AU:Y/R:I/V:C/RE:M/U:Red
Affected products
Sparx Systems Pty Ltd. · Sparx Pro Cloud ServerWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →