top of page
perceptive_background_267k.jpg

Advantech iView

Published:

4 December 2025 at 12:00:00

Alert date:

5 December 2025 at 08:03:23

Source:

cisa.gov

Click to open the original link from this advisory

CISA advisory about a SQL injection vulnerability (CVE-2025-13373) in Advantech iView versions 5.7.05.7057 and prior. The vulnerability has a CVSS v4 score of 8.7 and is exploitable remotely with low attack complexity. Attackers can inject SQL commands through improperly sanitized SNMP v1 trap requests on port 162, potentially allowing disclosure, modification, or deletion of sensitive data. The vulnerability affects critical manufacturing and IT infrastructure worldwide. Advantech recommends updating to iView v5.8.1 to address the issue.

Technical details

Mitigation steps:

Affected products:

Advantech iView

Related links:

Related CVE's:

Related threat actors:

IOC's:

This article was created with the assistance of AI technology by Perceptive.

© 2025 by Perceptive Security. All rights reserved.

email: info@perceptivesecurity.com

Disclaimer: Deze website toont informatie afkomstig van externe bronnen. Perceptive aanvaardt geen verantwoordelijkheid voor de inhoud, juistheid of volledigheid van deze informatie.

bottom of page