Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-52694

Опубликовано: 12 янв. 2026
Источник: nvd
CVSS3: 10
CVSS3: 9.8
EPSS Низкий

Описание

Successful exploitation of the SQL injection vulnerability could allow an unauthenticated remote attacker to execute arbitrary SQL commands on the vulnerable service when it is exposed to the Internet, potentially affecting data confidentiality, integrity, and availability. Users and administrators of affected product versions are advised to update to the latest versions immediately.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:advantech:iot_edge_linux_docker:*:*:*:*:*:*:*:*
Версия до 2.0.2 (исключая)
cpe:2.3:a:advantech:iot_edge_windows:*:*:*:*:*:*:*:*
Версия до 2.0.2 (исключая)
cpe:2.3:a:advantech:iotsuite_growth_linux_docker:*:*:*:*:*:*:*:*
Версия до 2.0.2 (исключая)
cpe:2.3:a:advantech:iotsuite_saas_composer:*:*:*:*:*:*:*:*
Версия до 3.4.15 (исключая)
cpe:2.3:a:advantech:iotsuite_starter_linux_docker:*:*:*:*:*:*:*:*
Версия до 2.0.2 (исключая)

EPSS

Процентиль: 92%
0.08999
Низкий

10 Critical

CVSS3

9.8 Critical

CVSS3

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 10
github
27 дней назад

Successful exploitation of the SQL injection vulnerability could allow an unauthenticated remote attacker to execute arbitrary SQL commands on the vulnerable service when it is exposed to the Internet.

EPSS

Процентиль: 92%
0.08999
Низкий

10 Critical

CVSS3

9.8 Critical

CVSS3

Дефекты

CWE-89