CVE-2017-12731: Opwglobal Sitesentinel Integra 100 Firmware

Critical severity, CVSS 9.8. EPSS: 1.6% chance of exploitation in the next 30 days.

A SQL Injection issue was discovered in OPW Fuel Management Systems SiteSentinel Integra 100, SiteSentinel Integra 500, and SiteSentinel iSite ATG consoles with the following software versions: older than V175, V175-V189, V191-V195, and V16Q3.1. The application is vulnerable to injection of malicious SQL queries via the input from the client.

Affected products

  • Opwglobal Sitesentinel Integra 100 Firmware: up to and including 175; version 16q3.1 only; version 189 only; version 191 only; version 195 only
  • Opwglobal Sitesentinel Integra 500 Firmware: up to and including 175; version 16q3.1 only; version 189 only; version 191 only; version 195 only
  • Opwglobal Sitesentinel Isite Atg Firmware: up to and including 175; version 16q3.1 only; version 189 only; version 191 only; version 195 only

Published 2017-09-09. Last modified 2026-06-17.