PT-2026-2444 · Progress · Flowmon Ads

Published

2026-01-13

·

Updated

2026-01-13

·

CVE-2025-13774

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Progress Flowmon ADS versions prior to 12.5.4 and 13.0.1
Description An SQL injection issue exists in Progress Flowmon ADS that allows authenticated users to execute unintended SQL queries and commands. The issue allows for the execution of arbitrary SQL commands through injection.
Recommendations Update Progress Flowmon ADS to version 12.5.4 or later. Update Progress Flowmon ADS to version 13.0.1 or later.

Fix

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2025-13774

Affected Products

Flowmon Ads