CVE-2025-63624

SQL Injection vulnerability in Shandong Kede Electronics Co., Ltd IoT smart water meter monitoring platform v.1.0 allows a remote attacker to execute arbitrary code via the imei_list.aspx file.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:sdkede:iot_smart_water_meter_firmware:1.0:*:*:*:*:*:*:*
cpe:2.3:h:sdkede:iot_smart_water_meter:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-02-03 18:16

Updated : 2026-06-17 09:53


NVD link : CVE-2025-63624

Mitre link : CVE-2025-63624

CVE.ORG link : CVE-2025-63624


JSON object : View

Products Affected

sdkede

  • iot_smart_water_meter
  • iot_smart_water_meter_firmware
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')