Metrics
Affected Vendors & Products
Thu, 29 May 2025 14:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
Mon, 21 Apr 2025 03:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Sat, 19 Apr 2025 19:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability, which was classified as critical, was found in webpy web.py 0.70. Affected is the function PostgresDB._process_insert_query of the file web/db.py. The manipulation of the argument seqname leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. | |
Title | webpy web.py db.py PostgresDB._process_insert_query sql injection | |
Weaknesses | CWE-74 CWE-89 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-04-19T19:31:19.855Z
Updated: 2025-05-29T13:11:18.512Z
Reserved: 2025-04-18T23:50:27.278Z
Link: CVE-2025-3818

Updated: 2025-05-29T13:11:18.512Z

Status : Awaiting Analysis
Published: 2025-04-19T20:15:15.037
Modified: 2025-05-29T14:15:36.833
Link: CVE-2025-3818

No data.