Skip to main content

CVE-2025-7916: CWE-502 Deserialization of Untrusted Data in Simopro Technology WinMatrix3

Critical
VulnerabilityCVE-2025-7916cvecve-2025-7916cwe-502
Published: Mon Jul 21 2025 (07/21/2025, 05:57:51 UTC)
Source: CVE Database V5
Vendor/Project: Simopro Technology
Product: WinMatrix3

Description

WinMatrix3 developed by Simopro Technology has an Insecure Deserialization vulnerability, allowing unauthenticated remote attackers to execute arbitrary code on the server by sending maliciously crafted serialized contents.

Technical Details

Data Version
5.1
Assigner Short Name
twcert
Date Reserved
2025-07-21T01:58:23.151Z
Cvss Version
4.0
State
PUBLISHED

Threat ID: 687ddb26a83201eaac09b82f

Added to database: 7/21/2025, 6:16:06 AM

Last updated: 7/21/2025, 6:16:06 AM

Views: 1

Actions

Please log in to the Console to use AI analysis features.

Need enhanced features?

Contact root@offseq.com for Pro access with improved analysis and higher rate limits.

Latest Threats