A vulnerability was found in Doditsolutions Homey BNB V4. It has been classified as critical. This affects an unknown part of the file admin/getrecord.php. The manipulation of the argument val leads to sql injection.

This vulnerability is referenced as CVE-2019-25493. Remote exploitation of the attack is possible. Furthermore, an exploit is available.