Vulnerability Details CVE-2025-48891
A vulnerability exists in Advantech iView that could allow for SQL
injection through the CUtils.checkSQLInjection() function. This
vulnerability can be exploited by an authenticated attacker with at
least user-level privileges, potentially leading to information
disclosure or a denial-of-service condition.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 14.0%
CVSS Severity
CVSS v3 Score 7.6
Products affected by CVE-2025-48891
-
cpe:2.3:a:advantech:iview:5.6
-
cpe:2.3:a:advantech:iview:5.7
-
cpe:2.3:a:advantech:iview:5.7.02
-
cpe:2.3:a:advantech:iview:5.7.03.6112
-
cpe:2.3:a:advantech:iview:5.7.03.6182
-
cpe:2.3:a:advantech:iview:5.7.04.6469
-
cpe:2.3:a:advantech:iview:5.7.04.6583
-
cpe:2.3:a:advantech:iview:5.7.04.6752