PT-2025-44752 · Digiwin · Easyflow .Net+1

Published

2025-11-03

·

Updated

2025-11-03

·

CVE-2025-12503

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions EasyFlow .NET and EasyFlow AiNet developed by Digiwin (affected versions not specified)
Description EasyFlow .NET and EasyFlow AiNet developed by Digiwin contains a SQL Injection issue. Authenticated remote attackers can inject arbitrary SQL commands, potentially allowing them to read database contents. The vulnerability allows for the injection of SQL commands through unspecified means.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2025-12503

Affected Products

Easyflow .Net
Easyflow Ainet