CVE-2019-13462

CRITICAL EXPLOITED NUCLEI

Lansweeper < 7.1.117.4 - Unauthenticated SQL Injection

Title source: llm
STIX 2.1

Exploitation Summary

CVE-2019-13462 has been observed exploited in the wild (reported by VulnCheck KEV). A Nuclei detection template is also available.

Description

Lansweeper before 7.1.117.4 allows unauthenticated SQL injection.

Nuclei Templates (1)

Lansweeper Unauthenticated SQL Injection
CRITICALby divya_mudgal
Shodan: http.title:"lansweeper - login"
FOFA: title="lansweeper - login"

References (2)

Core 2

Scores

CVSS v3 9.1
EPSS 0.1140
EPSS Percentile 95.4%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

Details

VulnCheck KEV 2025-01-22
CWE
CWE-89
Status published
Products (1)
lansweeper/lansweeper < 7.1.117.4
Published Aug 12, 2019
Tracked Since Feb 18, 2026