CVE-2025-7919 Information

Description

WinMatrix3 Web package developed by Simopro Technology has a SQL Injection vulnerability allowing unauthenticated remote attackers to inject arbitrary SQL commands to read modify and delete database contents.

Reference

https://www.twcert.org.tw/en/cp-139-10264-6c4b7-2.html https://www.twcert.org.tw/tw/cp-132-10259-b4b38-1.html

CNNVD-202507-2608 (Published: 2025-07-21)

Share on: