Metrics
Affected Vendors & Products
Solution
Update AP to version 3.8.52.5 (Web 1.2.39.5) and install the hotfix, or update AP to version 3.9.1 (Web 1.3.1) or later
Workaround
No workaround given by the vendor.
Mon, 21 Jul 2025 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Mon, 21 Jul 2025 07:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
cvssV3_1
|
Mon, 21 Jul 2025 06:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | WinMatrix3 Web package developed by Simopro Technology has a SQL Injection vulnerability, allowing unauthenticated remote attackers to inject arbitrary SQL commands to read, modify, and delete database contents. | |
Title | Simopro Technology|WinMatrix3 Web package - SQL Injection | |
Weaknesses | CWE-200 | |
References |
| |
Metrics |
cvssV4_0
|

Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2025-07-21T15:28:33.924Z
Reserved: 2025-07-21T01:58:26.646Z
Link: CVE-2025-7919

Updated: 2025-07-21T15:28:27.684Z

Status : Awaiting Analysis
Published: 2025-07-21T07:15:24.950
Modified: 2025-07-22T13:06:07.260
Link: CVE-2025-7919

No data.

No data.