CVE-2019-9083Active Exploitation(sqlitemanager / sqlitemanager)

LOWCVSS 9.8 · CRITICAL

Exploitation ongoing with high activity in latest observed window (2 mentions)

Immediate actions

  • Prioritize remediation for sqlitemanager sqlitemanager systems immediately
  • Assume compromise if assets are exposed
  • Track advisory updates for patch or workaround availability

Recommended action window: Immediate (within 24h)

NVD description

SQLiteManager 1.20 and 1.24 allows SQL injection via the /sqlitemanager/main.php dbsel parameter. NOTE: This product is discontinued.

3.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-89

Priority

LOW

Exploitation

ACTIVE

PoC

YES

Patch

NONE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • sqlitemanager

Threat summary

  • Active exploitation appears in 1 classified signals
  • 2 mentions across 1 observed day

What's happening

  • Active exploitation reported across 1 signal
  • General: 1 classified signal
  • 2 total mentions across 1 day

Affected systems

Products
sqlitemanager

2 versions affected across 1 product

Deep dive

Activity timeline2 mentions / 1d
01122Mentions · 2026-01-30: 2Active Exploitation · 2026-01-30: 101-30
Signal classification2 categories
Active Exploitation
150.0%
General
150.0%
Referenced assets1 URL
By indicator
Full discourse2 posts
  • Loginsoft Threat Intel@Loginsoft_Intel
    General

    Cytellite recent detection targeting CVE-2019-9083 — SpectraIP B.V. Visit -- https://cti.loginsoft.com/ip/5.182.209.68 #Loginsoft #Cytellite #Cybersecurity #CVE20199083 #LOVI #ThreatIntelligence #Infosecurity #AI https://t.co/6H6dURZh1k

    Post summary

    The tweet reports the detection of CVE‑2019‑9083 but provides no technical, exploit, or mitigation details.

    0000035
    19 followersView on X
  • Loginsoft Threat Intel@Loginsoft_Intel
    Active Exploitation

    Cytellite recent detection targeting CVE-2019-9083 — SpectraIP B.V. Visit -- https://cti.loginsoft.com/ip/5.182.209.68 #Loginsoft #Cytellite #Cybersecurity #CVE20199083 #LOVI #ThreatIntelligence #Infosecurity #AI https://t.co/F7F1qAJGZZ

    Post summary

    Cytellite reported recent detection of activity exploiting CVE-2019-9083, indicating potential in‑the‑wild exploitation.

    0000032
    19 followersView on X
CPE platform detail2 entries

2 of 2 entries

PartVendorProductVersionTarget SWTarget HW
Appsqlitemanagersqlitemanager1.20--
Appsqlitemanagersqlitemanager1.24--

Explore more