PT-2026-20534 · Unknown · Sd.Net Rim

Fabian Mosch

·

Published

2026-02-18

·

Updated

2026-02-18

·

CVE-2019-25359

CVSS v3.1

8.2

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N
Name of the Vulnerable Software and Affected Versions SD.NET RIM versions prior to 4.7.3c
Description The software contains a SQL injection issue that allows attackers to inject malicious SQL statements. Attackers can exploit this by sending specially crafted POST requests to the /vorlagen/ endpoint through the idtyp and idgremium parameters, potentially leading to unauthorized database manipulation and information disclosure.
Recommendations Update SD.NET RIM to version 4.7.3c or later.

Exploit

Fix

CSRF

Weakness Enumeration

Related Identifiers

CVE-2019-25359

Affected Products

Sd.Net Rim