PT-2025-30231 · Simopro Technology · Winmatrix3 Web

Linwz

·

Published

2025-07-21

·

Updated

2025-07-21

·

CVE-2025-7918

CVSS v3.1
9.8
VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Name of the Vulnerable Software and Affected Versions:

WinMatrix3 Web package versions (affected versions not specified)

Description:

WinMatrix3 Web package developed by Simopro Technology contains a SQL Injection vulnerability. This allows unauthenticated remote attackers to inject arbitrary SQL commands, potentially enabling them to read, modify, and delete database contents.

Recommendations:

At the moment, there is no information about a newer version that contains a fix for this vulnerability.

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2025-7918

Affected Products

Winmatrix3 Web