---
id: CVE-2025-12253
title: A vulnerability was determined in AMTT Hotel Broadband Operation System 1.0
summary: >-
  A vulnerability was determined in AMTT Hotel Broadband Operation System 1.0.
  Affected by this vulnerability is an unknown functionality of the file
  /user/portal/get_expiredtime.php. This manipulation of the argument uid causes
  sql inject…
severity: high
cvss: 7.3
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L'
cwe:
  - CWE-74
  - CWE-89
vendor: amttgroup
product: hibos
affected:
  - hibos = 1.0
published: '2025-10-27'
updated: '2026-09-30'
sourceUpdated: '2026-09-30T23:10:00.237'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2025-12253'
references:
  - url: 'https://github.com/guapiqing/cve/issues/3'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/?ctiid.329924'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/?id.329924'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/?submit.673967'
    label: cna@vuldb.com
tags:
  - nvd
epss: 0.00437
epssPercentile: 0.35663
ingestedAt: '2026-09-30T23:29:32.453Z'
---

## Overview

A vulnerability was determined in AMTT Hotel Broadband Operation System 1.0. Affected by this vulnerability is an unknown functionality of the file /user/portal/get_expiredtime.php. This manipulation of the argument uid causes sql injection. The attack may be initiated remotely. The exploit has been publicly disclosed and may be utilized. The vendor was contacted early about this disclosure but did not respond in any way.

## Affected

- `hibos = 1.0`

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
