CVE-2014-1597: I-Doit
High severity, CVSS 7.5. EPSS: 1.4% chance of exploitation in the next 30 days.
SQL injection vulnerability in the CMDB web application in synetics i-doit pro before 1.2.5 and i-doit open allows remote attackers to execute arbitrary SQL commands via the objID parameter to the default URI.
Affected products
- I-Doit I-Doit: up to and including 1.2.4; affected versions not specified; version 1.0 only; version 1.0.2 only; version 1.1.1 only; version 1.1.2 only; …
Published 2014-02-27. Last modified 2026-06-17.