CVE-2015-10063: Theradsystem Project Theradsystem
Critical severity, CVSS 9.8. EPSS: 0.8% chance of exploitation in the next 30 days.
A vulnerability was found in saemorris TheRadSystem and classified as critical. This issue affects the function redirect of the file _login.php. The manipulation of the argument user/pass leads to sql injection. The attack may be initiated remotely. The identifier of the patch is bfba26bd34af31648a11af35a0bb66f1948752a6. It is recommended to apply a patch to fix this issue. The identifier VDB-218453 was assigned to this vulnerability.
Affected products
- Theradsystem Project Theradsystem: before 2015-04-03 (fixed in 2015-04-03)
Published 2023-01-17. Last modified 2026-06-17.