CVE-2025-32993 | Vision Helpdesk up to 5.7.0 Forgot Password forgot-password vis_username sql injection
A vulnerability was found in Vision Helpdesk up to 5.7.0 and classified as critical. Affected by this issue is some unknown functionality of the file index.php?/home/forgot-password of the component Forgot Password Handler. The manipulation of the argument vis_username leads to sql injection.
This vulnerability is handled as CVE-2025-32993. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.VulDB Recent EntriesRead More