WeGIA SQL Injection Vulnerability in Profile_Atendido.php Endpoint

Vulnerability

A SQL injection vulnerability has been identified in WeGIA versions prior to 3.4.6. The issue resides in the '/html/atendido/Profile_Atendido.php' endpoint, specifically within the 'idatendido' parameter. This vulnerability allows authorized attackers to execute arbitrary SQL queries, potentially leading to unauthorized access to sensitive information. Exploitation of this vulnerability could also cause a denial-of-service condition by using time-delay queries.

Impact

Successful exploitation allows for arbitrary SQL query execution, which could lead to unauthorized data access, database compromise, and potential denial-of-service conditions through time-delay queries.

Reproduction

To reproduce this vulnerability, send a GET request to the '/html/atendido/Profile_Atendido.php' endpoint with a crafted 'idatendido' parameter that includes a SQL injection payload, such as a subquery that uses the 'sleep' function to introduce a time delay. This demonstrates the vulnerability by exploiting the application's SQL query handling and confirming the injection's success through the delayed response.

Remediation

Users can upgrade to WeGIA version 3.4.6 or later, where this vulnerability has been addressed.

Added: Jul 18, 2025, 4:38 PM
Updated: Jul 18, 2025, 4:38 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
7.5
exploitability
4.6
remediation
7.7
relevance
0.3
threat
6.4
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.