Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-6795

Опубликовано: 09 сент. 2024
Источник: nvd
CVSS3: 10
CVSS3: 9.8
EPSS Низкий

Описание

In Connex health portal released before8/30/2024, SQL injection vulnerabilities were found that could have allowed an unauthenticated attacker to gain unauthorized access to Connex portal's database. 

An attacker could have submitted a crafted payload to Connex portal that could have resulted in modification and disclosure of database content

and/or perform administrative operations including shutting down the database.

Ссылки

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:baxter:connex_health_portal:*:*:*:*:*:*:*:*
Версия до 2024-08-30 (исключая)

EPSS

Процентиль: 48%
0.00249
Низкий

10 Critical

CVSS3

9.8 Critical

CVSS3

Дефекты

CWE-89
CWE-89

Связанные уязвимости

CVSS3: 10
github
больше 1 года назад

In Connex health portal released before8/30/2024, SQL injection vulnerabilities were found that could have allowed an unauthenticated attacker to gain unauthorized access to Connex portal's database.  An attacker could have submitted a crafted payload to Connex portal that could have resulted in modification and disclosure of database content and/or perform administrative operations including shutting down the database.

EPSS

Процентиль: 48%
0.00249
Низкий

10 Critical

CVSS3

9.8 Critical

CVSS3

Дефекты

CWE-89
CWE-89