SQL Injection Vulnerability in WinMatrix3 Web Package by Simopro Technology
CVE-2025-7919
7.1HIGH
What is CVE-2025-7919?
The WinMatrix3 Web package by Simopro Technology is susceptible to a SQL Injection vulnerability that enables unauthenticated remote attackers to manipulate SQL queries. By exploiting this flaw, attackers can potentially read, alter, or erase contents in the database, leading to severe data integrity breaches and unauthorized data access. It is crucial for users of this software to apply security patches and follow best practices in database security to mitigate these risks.
Affected Version(s)
WinMatrix3 Web package 0 <= 1.2.38.1