← Vulnerability feed

Vulnerability record · CVE-2024-52874 · published 22 May 2025

CVE-2024-52874: Infoblox netmri sql injection vulnerability

Infoblox · Netmri

In Infoblox NETMRI before 7.6.1, authenticated users can perform SQL injection attacks.

8.8 CVSS 3.1 High EPSS 10% · top 4.5% CWE-89 · SQL injection
8.8CVSS 3.1 base score
10%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
1References
17 Jun 2026Last modified by NVD

Description

In Infoblox NETMRI before 7.6.1, authenticated users can perform SQL injection attacks.

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2024-52874 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2015-2033Infoblox netmri improper authentication vulnerabilityAnyterm Daemon in Infoblox Network Automation NetMRI before NETMRI-23483 allows remote attackers to execute arbitrary commands with root privileges v…EPSS 3.0%10.0CVE-2014-3418Infoblox netmri os command injection vulnerabilityconfig/userAdmin/login.tdf in Infoblox NetMRI before 6.8.5 allows remote attackers to execute arbitrary commands via shell metacharacters in the skip…EPSS 7.2%9.8CVE-2025-32814Infoblox netmri sql injection vulnerabilityAn issue was discovered in Infoblox NETMRI before 7.6.1. Unauthenticated SQL Injection can occur.EPSS 36%7.2CVE-2025-32813Infoblox netmri command injection vulnerabilityAn issue was discovered in Infoblox NETMRI before 7.6.1. Remote Unauthenticated Command Injection can occur.EPSS 44%7.2CVE-2014-3419Infoblox netmri vulnerabilityInfoblox NetMRI before 6.8.5 has a default password of admin for the "root" MySQL database account, which makes it easier for local users to obtain a…EPSS 0.46%6.5CVE-2025-32815Infoblox netmri improper authentication vulnerabilityAn issue was discovered in Infoblox NETMRI before 7.6.1. Authentication Bypass via a Hardcoded credential can occur.EPSS 40%6.1CVE-2018-6643Infoblox netmri cross-site scripting vulnerabilityInfoblox NetMRI 7.1.1 has Reflected Cross-Site Scripting via the /api/docs/index.php query parameter.EPSS 0.81%6.1CVE-2016-6484Infoblox netmri vulnerabilityCRLF injection vulnerability in Infoblox Network Automation NetMRI before 7.1.1 allows remote attackers to inject arbitrary HTTP headers and conduct …EPSS 1.8%

Source: NIST National Vulnerability Database (record CVE-2024-52874), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.