MarkAny SafePC Enterprise Path Traversal Vulnerability Leading to SQL Injection
Vulnerability
A path traversal vulnerability in MarkAny SafePC Enterprise allows attackers to access server information and conduct SQL injection attacks. This vulnerability may also exploit an unrestricted file upload feature that accepts dangerous file types. The issue affects SafePC Enterprise versions 7.0.* (prior to 7.0.1) and 5.*.* on both Windows and Linux.
Impact
Exploitation of this vulnerability could lead to unauthorized access to server information, SQL injection attacks, and potentially allow for the execution of malicious files on the server.
Added: Oct 2, 2025, 6:23 AM
Updated: Oct 2, 2025, 6:23 AM
Vulnerability Rating
Custom Algorithm
spread
0.0impact
5.0exploitability
7.4remediation
0.0relevance
0.6threat
0.0urgency
2.9incentive
5.8Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
