Tesigandia's vulnerability profile centers on its Gandia Integra Total product, a niche enterprise integration platform where the recurring exposure involves application-layer input-handling weaknesses, principally SQL injection and path-traversal flaws. These weakness classes reflect the product's role in processing and routing data across backend systems, and the vendor's disclosures frequently acquire public exploit code. Current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Tesigandia over time
Signals from CVEs in this vendor scope (6 CVEs).
6 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-41373HIGH A SQL injection vulnerability has been found in Gandia Integra Total of TESI from version 2.1.2217.3 to v4.4.2236.1. The vulnerability allows an authenticated attacker to retrieve, | Aug 1, 2025 | 8.8 | 38 | NO | YES |
CVE-2025-41374HIGH A SQL injection vulnerability has been found in Gandia Integra Total of TESI from version 2.1.2217.3 to v4.4.2236.1. The vulnerability allows an authenticated attacker to retrieve, | Aug 1, 2025 | 8.8 | 28 | NO | NO |
CVE-2025-41372HIGH A SQL injection vulnerability has been found in Gandia Integra Total of TESI from version 2.1.2217.3 to v4.4.2236.1. The vulnerability allows an authenticated attacker to retrieve, | Aug 1, 2025 | 8.8 | 28 | NO | NO |
CVE-2025-41371HIGH A SQL injection vulnerability has been found in Gandia Integra Total of TESI from version 2.1.2217.3 to v4.4.2236.1. The vulnerability allows an authenticated attacker to retrieve, | Aug 1, 2025 | 8.8 | 28 | NO | NO |
CVE-2025-41370HIGH A SQL injection vulnerability has been found in Gandia Integra Total of TESI from version 2.1.2217.3 to v4.4.2236.1. The vulnerability allows an authenticated attacker to retrieve, | Aug 1, 2025 | 8.8 | 28 | NO | NO |
CVE-2025-41073MEDIUM Path Traversal vulnerability in version 4.4.2236.1 of TESI Gandia Integra Total. This issue allows an authenticated attacker to download a ZIP file containing files from the server | Oct 23, 2025 | 6.5 | 20 | NO | NO |
Signals from CVEs in this vendor scope (6 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Tesigandia.
Media articles that mention a CVE ID that affects a product developed by Tesigandia — matched by CVE ID, not by vendor name.