CVE-2025-56450 | Log2Space Subscriber Management Software 1.1 POST selfcareLeadHistory lead_id sql injection
A vulnerability classified as critical was found in Log2Space Subscriber Management Software 1.1. Affected is an unknown function of the file /l2s/api/selfcareLeadHistory of the component POST Handler. The manipulation of the argument lead_id results in sql injection.
This vulnerability is identified as CVE-2025-56450. The attack can be executed remotely. There is not any exploit available.