CVE-2012-1827: Efstechnology Autoform Pdm Archive

Medium severity, CVSS 6.5. EPSS: 1.6% chance of exploitation in the next 30 days.

The web service in AutoFORM PDM Archive before 7.1 does not have authorization requirements, which allows remote authenticated users to perform database operations via a SOAP request, as demonstrated by the initializeQueryDatabase2 request.

Affected products

  • Efstechnology Autoform Pdm Archive: up to and including 7.0; version 6.920 only

Published 2012-06-13. Last modified 2026-06-16.