No analysis available yet.
Vendor Solution
Update AP to version 3.8.52.5 (Web 1.2.39.5) and install the hotfix, or update AP to version 3.9.1 (Web 1.3.1) or later
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-22063 | WinMatrix3 Web package developed by Simopro Technology has a SQL Injection vulnerability, allowing unauthenticated remote attackers to inject arbitrary SQL commands to read, modify, and delete database contents. |
Mon, 21 Jul 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 21 Jul 2025 07:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Mon, 21 Jul 2025 06:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | WinMatrix3 Web package developed by Simopro Technology has a SQL Injection vulnerability, allowing unauthenticated remote attackers to inject arbitrary SQL commands to read, modify, and delete database contents. | |
| Title | Simopro Technology|WinMatrix3 Web package - SQL Injection | |
| Weaknesses | CWE-200 | |
| References |
| |
| Metrics |
cvssV4_0
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2025-07-21T15:28:33.924Z
Reserved: 2025-07-21T01:58:26.646Z
Link: CVE-2025-7919
Updated: 2025-07-21T15:28:27.684Z
Status : Deferred
Published: 2025-07-21T07:15:24.950
Modified: 2026-04-15T00:35:42.020
Link: CVE-2025-7919
No data.
OpenCVE Enrichment
No data.
EUVD