Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9w96-264r-8f55

Опубликовано: 04 мар. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

Multiple SQL Injection vulnerabilities exist in the reporting application of the Arista Edge Threat Management - Arista NG Firewall (NGFW). A user with advanced report application access rights can exploit the SQL injection, allowing them to execute commands on the underlying operating system with elevated privileges.

Multiple SQL Injection vulnerabilities exist in the reporting application of the Arista Edge Threat Management - Arista NG Firewall (NGFW). A user with advanced report application access rights can exploit the SQL injection, allowing them to execute commands on the underlying operating system with elevated privileges.

EPSS

Процентиль: 43%
0.00204
Низкий

8.8 High

CVSS3

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 8.8
nvd
почти 2 года назад

Multiple SQL Injection vulnerabilities exist in the reporting application of the Arista Edge Threat Management - Arista NG Firewall (NGFW). A user with advanced report application access rights can exploit the SQL injection, allowing them to execute commands on the underlying operating system with elevated privileges.

EPSS

Процентиль: 43%
0.00204
Низкий

8.8 High

CVSS3

Дефекты

CWE-89