PT-2026-20534 · Unknown · Sd.Net Rim

Fabian Mosch

·

Publicado

2026-02-18

·

Atualizado

2026-02-18

·

CVE-2019-25359

CVSS v3.1

8.2

Alta

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N
Name of the Vulnerable Software and Affected Versions SD.NET RIM versions prior to 4.7.3c
Description The software contains a SQL injection issue that allows attackers to inject malicious SQL statements. Attackers can exploit this by sending specially crafted POST requests to the /vorlagen/ endpoint through the idtyp and idgremium parameters, potentially leading to unauthorized database manipulation and information disclosure.
Recommendations Update SD.NET RIM to version 4.7.3c or later.

Exploit

Correção

CSRF

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2019-25359

Produtos afetados

Sd.Net Rim