CVE-2025-48891: Advantech Iview

High severity, CVSS 7.6. EPSS: 0.3% chance of exploitation in the next 30 days.

A vulnerability exists in Advantech iView that could allow for SQL injection through the CUtils.checkSQLInjection() function. This vulnerability can be exploited by an authenticated attacker with at least user-level privileges, potentially leading to information disclosure or a denial-of-service condition.

Affected products

  • Advantech Iview: before 5.7.05.7057 (fixed in 5.7.05.7057)

Published 2025-07-11. Last modified 2026-06-17.