Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-14271 | The ISOinsight from Netvision has a SQL Injection vulnerability, allowing unauthenticated remote attackers to inject arbitrary SQL commands to read, modify, and delete database contents. |
Solution
For v2.9.0.x, please update to version 2.9.0.250501 or later For v3.0.0.x, please update to version 3.0.0.250501 or later
Workaround
No workaround given by the vendor.
Mon, 12 May 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 12 May 2025 06:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The ISOinsight from Netvision has a SQL Injection vulnerability, allowing unauthenticated remote attackers to inject arbitrary SQL commands to read, modify, and delete database contents. | |
| Title | Netvision ISOinsight - SQL Injection | |
| Weaknesses | CWE-89 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2025-05-12T15:07:53.922Z
Reserved: 2025-05-12T01:49:31.480Z
Link: CVE-2025-4559
Updated: 2025-05-12T15:07:48.652Z
Status : Awaiting Analysis
Published: 2025-05-12T06:15:40.750
Modified: 2025-05-12T17:32:32.760
Link: CVE-2025-4559
No data.
OpenCVE Enrichment
No data.
EUVD