AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2025-10870

UNKNOWN · CVSS N/A EPSS 0.27%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2025-11-07 · Last synced 2026-08-04

CyberRota Analysis

This vulnerability has an unknown severity rating. It involves a SQL injection risk.

CVE
CVE-2025-10870
Severity
UNKNOWN
CVSS
N/A
EPSS
0.27%

Original NVD Description

SQL injection vulnerability in DIAL's CentrosNet v2.64. Allows an attacker to retrieve, create, update, and delete databases by sending POST and GET requests with the 'ultralogin' parameter in '/centrosnet/ultralogin.php'.