PT-2025-47452 · Unknown · Eksagate Webpack Management System

·

CVE-2025-10437

·

Published

2025-11-19

·

Updated

2026-06-05

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Eksagate Webpack Management System versions through 20251119
Description A flaw exists in Eksagate Webpack Management System that allows for SQL Injection. This issue enables unauthorized database control without authentication. The vulnerability is due to improper neutralization of special elements within SQL commands.
Recommendations Versions prior to 20251119 are affected. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

SQL injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-10437

Affected Products

Eksagate Webpack Management System