CVE-2025-13373

HIGH

Advantech iView <5.7.05.7057 - SQL Injection

Title source: llm
STIX 2.1

Description

Advantech iView versions 5.7.05.7057 and prior do not properly sanitize SNMP v1 trap (Port 162) requests, which could allow an attacker to inject SQL commands.

Scores

CVSS v3 7.5
EPSS 0.0003
EPSS Percentile 10.2%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact partial

Details

CWE
CWE-89
Status published
Products (2)
Advantech/iView 5.7.05.7057
Advantech/iView 5.8.1
Published Dec 04, 2025
Tracked Since Feb 18, 2026