Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-41285

Опубликовано: 10 нояб. 2023
Источник: nvd
CVSS3: 7.4
CVSS3: 8.8
EPSS Низкий

Описание

A SQL injection vulnerability has been reported to affect QuMagie. If exploited, the vulnerability could allow authenticated users to inject malicious code via a network.

We have already fixed the vulnerability in the following version: QuMagie 2.1.4 and later

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:qnap:qumagie:*:*:*:*:*:*:*:*
Версия до 2.1.4 (исключая)

EPSS

Процентиль: 26%
0.0009
Низкий

7.4 High

CVSS3

8.8 High

CVSS3

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 7.4
github
около 2 лет назад

A SQL injection vulnerability has been reported to affect QuMagie. If exploited, the vulnerability could allow authenticated users to inject malicious code via a network. We have already fixed the vulnerability in the following version: QuMagie 2.1.4 and later

EPSS

Процентиль: 26%
0.0009
Низкий

7.4 High

CVSS3

8.8 High

CVSS3

Дефекты

CWE-89