Part-DB Vulnerabilities and Affected Products
Vulnerabilities associated with Part-DB.
Products
Clear product- Part-DB-server2 vulnerabilities
- Part-DB1 vulnerability
- part-db/part-db1 vulnerability
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2019-25432HIGH | Part-DB 0.4 Authentication Bypass via login.phpPart-DB 0.4 contains an authentication bypass vulnerability that allows unauthenticated attackers to login by injecting SQL syntax into authentication parameters. Attackers can submit a single quote followed by 'or' in the login form to bypass credential validation and gain unauthorized access to the application. CWE-89Feb 20, 2026 | CVSS8.8v4.0 | EPSS0.351% | PoCs1 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |