Beveiligingsadvies

CVE-2019-25443

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-02-22 13:18:23
Laatst bijgewerkt 2026-04-07 14:04:07
Toegewezen door VulnCheck
CVSS-score 8.8
Status PUBLISHED

Beschrijving

Inventory Webapp contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through GET parameters. Attackers can supply malicious SQL payloads in the name, description, quantity, or cat_id parameters to add-item.php to execute arbitrary database commands.