📦 Exito

by Sergestec

🔍 What is Exito?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-41018

CRITICAL CVSS 9.8 Oct 16, 2025

This SQL injection vulnerability in Sergestec's Exito v8.0 allows attackers to manipulate database queries through the 'cat' parameter in '/public.php'. Attackers can retrieve, modify, create, or dele...

CVE-2025-41020

HIGH CVSS 7.5 Oct 16, 2025

This CVE describes an Insecure Direct Object Reference (IDOR) vulnerability in Sergestec's Exito v8.0 that allows attackers to access other customers' data by manipulating the 'id' parameter in the '/...