CVE-2015-5642: Icz Matchasns

Medium severity, CVSS 6.5. EPSS: 1% chance of exploitation in the next 30 days.

Multiple SQL injection vulnerabilities in ICZ MATCHA INVOICE before 2.5.7 allow remote authenticated users to execute arbitrary SQL commands via unspecified vectors.

Affected products

  • Icz Matchasns: up to and including 1.3.6

Published 2015-10-06. Last modified 2026-06-17.