Junglewise Threat Intelligence

CVE-2025-41013: SQL injection vulnerability in TCMAN GIM v11 in version 20250304. This vulnerability allows an attacker to retrieve, create, update, and del

CVE-2025-41013 · Severity: critical · CVSS 9.8 · Published 2025-12-02

Technologies: Tcman Gim. Vendors: Tcman.

Executive brief

SQL injection vulnerability in TCMAN GIM v11 in version 20250304. This vulnerability allows an attacker to retrieve, create, update, and delete databases by sending a GET request using the 'idmant' parameter in '/PC/frmEPIS.aspx'.

Affected products

  • tcman gim

Related threats