CVE-2025-40617 | Bookgy HTTP Request bkg_seleccionar_hora_ajax.php IDTIPO/IDPISTA/IDSOCIO sql injection
A vulnerability was found in Bookgy. It has been rated as critical. This vulnerability affects unknown code of the file /bkg_seleccionar_hora_ajax.php of the component HTTP Request Handler. The manipulation of the argument IDTIPO/IDPISTA/IDSOCIO leads to sql injection.
This vulnerability is documented as CVE-2025-40617. The attack can be initiated remotely. There is not any exploit available.