PT-2025-47452 · Unknown · Eksagate Webpack Management System

Barış Baydur

·

Published

2025-11-19

·

Updated

2025-11-24

·

CVE-2025-10437

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Eksagate Webpack Management System versions through 20251119
Description A flaw exists in Eksagate Webpack Management System that allows for SQL Injection. This issue enables unauthorized database control without authentication. The vulnerability is due to improper neutralization of special elements within SQL commands.
Recommendations Versions prior to 20251119 are affected. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2025-10437

Affected Products

Eksagate Webpack Management System