CVE detail
CVE-2025-15623 — CVE-2025-15623
Published 2026-04-17 · Modified 2026-06-17 · Vendor sparxsystems · Product pro_cloud_server · Source nvd
HIGH
severity
CVSS-derived band
0.0026
EPSS probability
exploitation probability, 30d
18.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
Exposure of Private Personal Information to an Unauthorized Actor, : Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Sparx Systems Pty Ltd. Sparx Pro Cloud Server.
Unauthenticated user can retrieve database password in plaintext in certain situations
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References