CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.8. It involves a SQL injection risk.
CVE
CVE-2025-40618
Severity
CRITICAL
CVSS
9.8
EPSS
0.39%
Original NVD Description
SQL injection vulnerability in Bookgy. This vulnerability could allow an attacker to retrieve, create, update and delete databases by sending an HTTP request through the "IDRESERVA" parameter in /bkg_imprimir_comprobante.php
Related CVEs
Other vulnerabilities affecting the same vendor(s)