Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-32569

Опубликовано: 10 мая 2023
Источник: nvd
CVSS3: 7.2
CVSS3: 9.8
EPSS Низкий

Описание

An issue was discovered in Veritas InfoScale Operations Manager (VIOM) before 7.4.2.800 and 8.x before 8.0.410. The InfoScale VIOM web application is vulnerable to SQL Injection in some of the areas of the application. This allows attackers (who must have admin credentials) to submit arbitrary SQL commands on the back-end database to create, read, update, or delete any sensitive data stored in the database.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:veritas:infoscale_operations_manager:*:*:*:*:*:*:*:*
Версия до 7.4.2.800 (исключая)
cpe:2.3:a:veritas:infoscale_operations_manager:*:*:*:*:*:*:*:*
Версия от 8.0.0 (включая) до 8.0.410 (исключая)

EPSS

Процентиль: 49%
0.00263
Низкий

7.2 High

CVSS3

9.8 Critical

CVSS3

Дефекты

CWE-89
CWE-89

Связанные уязвимости

CVSS3: 7.2
github
больше 2 лет назад

An issue was discovered in Veritas InfoScale Operations Manager (VIOM) before 7.4.2.800 and 8.x before 8.0.410. The InfoScale VIOM web application is vulnerable to SQL Injection in some of the areas of the application. This allows attackers to submit arbitrary SQL commands on the back-end database to create, read, update, or delete any sensitive data stored in the database.

EPSS

Процентиль: 49%
0.00263
Низкий

7.2 High

CVSS3

9.8 Critical

CVSS3

Дефекты

CWE-89
CWE-89