Логотип exploitDog
bind:CVE-2024-9971
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-9971

Количество 2

Количество 2

nvd логотип

CVE-2024-9971

11 месяцев назад

The specific query functionality in the FlowMaster BPM Plus from NewType does not properly restrict user input, allowing remote attackers with regular privileges to inject SQL commands to read, modify, or delete database contents.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-2g6c-2vm9-2g8p

11 месяцев назад

The specific query functionality in the FlowMaster BPM Plus from NewType does not properly restrict user input, allowing remote attackers with regular privileges to inject SQL commands to read, modify, or delete database contents.

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-9971

The specific query functionality in the FlowMaster BPM Plus from NewType does not properly restrict user input, allowing remote attackers with regular privileges to inject SQL commands to read, modify, or delete database contents.

CVSS3: 8.8
0%
Низкий
11 месяцев назад
github логотип
GHSA-2g6c-2vm9-2g8p

The specific query functionality in the FlowMaster BPM Plus from NewType does not properly restrict user input, allowing remote attackers with regular privileges to inject SQL commands to read, modify, or delete database contents.

CVSS3: 8.8
0%
Низкий
11 месяцев назад

Уязвимостей на страницу