📦 Ussd Gateway

by Opencode

🔍 What is Ussd Gateway?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-65236

CRITICAL CVSS 9.8 Nov 26, 2025

This SQL injection vulnerability in OpenCode Systems USSD Gateway allows attackers to execute arbitrary SQL commands via the Session ID parameter in the control panel endpoint. Attackers can potential...

CVE-2025-65235

CRITICAL CVSS 9.8 Nov 26, 2025

This SQL injection vulnerability in OpenCode Systems USSD Gateway allows attackers to execute arbitrary SQL commands via the ID parameter in the getSubUsersByProvider function. This could lead to data...

CVE-2025-65237

MEDIUM CVSS 6.1 Nov 26, 2025

This reflected cross-site scripting (XSS) vulnerability in OpenCode Systems USSD Gateway allows attackers to inject malicious JavaScript that executes in users' browsers. Attackers can steal session c...

CVE-2025-65238

MEDIUM CVSS 6.5 Nov 26, 2025

This vulnerability allows attackers with low-level privileges in OpenCode Systems USSD Gateway to bypass access controls and dump user records containing sensitive information. It affects organization...

CVE-2025-65239

MEDIUM CVSS 4.3 Nov 26, 2025

This vulnerability allows attackers with low-level privileges to read server logs via the /aux1/ocussd/trace endpoint in OpenCode Systems USSD Gateway. It affects organizations using OpenCode Systems ...