CVE-2025-8162 | deerwms deer-wms-2 up to 3.3 /system/dept/list params[dataScope] sql injection (ICLQKV)
A vulnerability classified as critical has been found in deerwms deer-wms-2 up to 3.3. Impacted is an unknown function of the file /system/dept/list. This manipulation of the argument params[dataScope] causes sql injection.
This vulnerability is registered as CVE-2025-8162. Remote exploitation of the attack is possible. Furthermore, an exploit is available.