CVE-2015-6537: Epiphanyhealthdata Cardio Server

Critical severity, CVSS 9.8. EPSS: 1.5% chance of exploitation in the next 30 days.

SQL injection vulnerability in the login page in Epiphany Cardio Server 3.3 allows remote attackers to execute arbitrary SQL commands via a crafted URL.

Affected products

Published 2015-12-27. Last modified 2026-06-17.