Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jfpc-5fff-j5r6

Опубликовано: 28 мар. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 8.6

Описание

Input from multiple fields in Streamsoft Prestiż is not sanitized properly, leading to an SQL injection vulnerability, which might be exploited by an authenticated remote attacker.  This issue was fixed in 18.1.376.37 version of the software.

Input from multiple fields in Streamsoft Prestiż is not sanitized properly, leading to an SQL injection vulnerability, which might be exploited by an authenticated remote attacker.  This issue was fixed in 18.1.376.37 version of the software.

EPSS

Процентиль: 63%
0.00445
Низкий

8.6 High

CVSS4

Дефекты

CWE-89

Связанные уязвимости

nvd
11 месяцев назад

Input from multiple fields in Streamsoft Prestiż is not sanitized properly, leading to an SQL injection vulnerability, which might be exploited by an authenticated remote attacker.  This issue was fixed in 18.1.376.37 version of the software.

EPSS

Процентиль: 63%
0.00445
Низкий

8.6 High

CVSS4

Дефекты

CWE-89