CVE-2025-5176 | Realce Tecnologia Queue Ticket Kiosk up to 20250517 Admin Login Page /adm/index.php Usuário sql injection
A vulnerability was found in Realce Tecnologia Queue Ticket Kiosk up to 20250517. It has been declared as critical. This vulnerability affects unknown code of the file /adm/index.php of the component Admin Login Page. The manipulation of the argument Usuário leads to sql injection.
This vulnerability was named CVE-2025-5176. The attack can be initiated remotely. Furthermore, there is an exploit available.
The vendor was contacted early about this disclosure but did not respond in any way.