Carregando...
Qualitor - Software para Atender Melhor - Help Desk, Service Desk, Shared Services, Ouvidoria
Qualitor - Software para Atender Melhor - Help Desk, Service Desk, Shared Services, Ouvidoria

Official Statement Regarding Vulnerability CVE-2025-14580

Publication Date: December 12, 2025

Referenced CVE: CVE-2025-14580

Affected Product(s): Qualitor / Versions 8.20.77 and 8.24.73 or earlier

Qualitor Software is committed to the security and integrity of its products, and we want to ensure transparency and ongoing support for our users. Recently, a security vulnerability was identified in our Qualitor product, related to CVE-2025-14580.

Vulnerability Description

The affected element is an unknown function in the file /Qualitor/html/bc/bcdocumento9/biblioteca/request/viewDocumento.php. Manipulation of the cdscript argument leads to a cross-site scripting (XSS) attack that can be exploited remotely.

Patch Released

After identifying the vulnerability, our security team acted quickly to develop and test an effective patch to mitigate the risks.

This action completely eliminates the execution point that allowed improper manipulation of parameters in the application, enabling the injection and execution of unauthorized content in the user's browser. This behavior represented a significant security risk, potentially compromising data integrity.

The patch is available from versions 8.20.78 and 8.24.74. The update procedure can be requested through our official communication channels.

We recommend that all users who have not yet applied this update do so as soon as possible to ensure the continued security of their systems.

Actions Taken

Analysis and Mitigation: We investigated the vulnerability and implemented the necessary patch to eliminate the associated risk.

Quality and Validation Testing: We conducted rigorous testing to ensure that the patch did not impact the stability and performance of the product.

Proactive Communication: We notified our customers about the update and recommended immediate application of the fix.

User Guidelines

1. Check your product version to ensure you are using version 8.20.78, 8.24.74 or higher.

2. Apply the update as instructed through our official communication channels.

3. If you have any questions or need support, please contact our customer service team through our official communication channels.

Commitment to Security

At Qualitor Software, we take the security of our products very seriously. We continuously work to identify, correct and prevent vulnerabilities, ensuring a secure environment for our users.

We will continue to monitor and update our solutions to maintain customer trust and the integrity of the systems that use our products.

Contact

For questions or more information, please contact our technical support team:

email: suporte@qualitor.com.br

Service portal:

https://qualitor.qualitorsoftware.com/loginUsuario.php