Sunbirddcim

    Dashboard / Vendors

    Products: 2
    Vulnerabilities: 7
    Known Exploited: 0
    0
    Critical Level Threats
    3
    High Level Threats
    3
    Medium Level Threats
    1
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2025-55703

    An error-based SQL injection vulnerability exists in the Sunbird Power IQ 9.2.0 API. The vulnerability is due to an outdated API endpoint that applied arrays without proper input validation. This can allow attackers to manipulate SQL queries. This has been addressed in Power IQ version 9.2.1, where the API call code was updated to ensure safe handling of input values.

    Last Modified: Dec 30, 2025
    Published: Dec 15, 2025

    CVE-2025-66238

    Sunbird DCIM dcTrack and Power IQ Authentication Bypass Using an Alternate Path or Channel

    Last Modified: Apr 15, 2026
    Published: Dec 04, 2025

    CVE-2025-66237

    Sunbird DCIM dcTrack and Power IQ Use of Hard-coded Credentials

    Last Modified: Apr 15, 2026
    Published: Dec 04, 2025

    CVE-2024-37776

    A cross-site scripting (XSS) vulnerability in Sunbird DCIM dcTrack v9.1.2 allows attackers to execute arbitrary web scripts or HTML via a crafted payload in some admin screens.

    Last Modified: Jun 20, 2025
    Published: Dec 16, 2024

    CVE-2024-37774

    A Cross-Site Request Forgery (CSRF) in Sunbird DCIM dcTrack v9.1.2 allows authenticated attackers to escalate their privileges by forcing an Administrator user to perform sensitive requests in some admin screens.

    Last Modified: Jun 20, 2025
    Published: Dec 16, 2024
    Items Per Page
    Sunbirddcim Vulnerabilities & Security CVEs | CVE-DB