Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-6097

Опубликовано: 13 нояб. 2023
Источник: nvd
CVSS3: 9.4
CVSS3: 8.8
EPSS Низкий

Описание

A SQL injection vulnerability has been found in ICS Business Manager, affecting version 7.06.0028.7089. This vulnerability could allow a remote user to send a specially crafted SQL query and retrieve all the information stored in the database. The data could also be modified or deleted, causing the application to malfunction.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:icssolution:ics_business_manager:7.06.0028.2802:*:*:*:*:*:*:*
cpe:2.3:a:icssolution:ics_business_manager:7.06.0028.7066:*:*:*:*:*:*:*
cpe:2.3:a:icssolution:ics_business_manager:7.06.0028.7089:*:*:*:*:*:*:*

EPSS

Процентиль: 35%
0.00139
Низкий

9.4 Critical

CVSS3

8.8 High

CVSS3

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 9.4
github
около 2 лет назад

A SQL injection vulnerability has been found in ICS Business Manager, affecting version 7.06.0028.7089. This vulnerability could allow a remote user to send a specially crafted SQL query and retrieve all the information stored in the database. The data could also be modified or deleted, causing the application to malfunction.

EPSS

Процентиль: 35%
0.00139
Низкий

9.4 Critical

CVSS3

8.8 High

CVSS3

Дефекты

CWE-89