A SQL Injection vulnerability was discovered in Cloudlog 2.6.15, specifically within the get_station_info()function located in the file /application/models/Oqrs_model.php. The vulnerability is exploitable via the station_id parameter.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://chiggerlor.substack.com/p/cve-2024-45999 |
History
Mon, 07 Oct 2024 19:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Magicbug
Magicbug cloudlog |
|
CPEs | cpe:2.3:a:magicbug:cloudlog:*:*:*:*:*:*:*:* | |
Vendors & Products |
Magicbug
Magicbug cloudlog |
Tue, 01 Oct 2024 20:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Cloudlog
Cloudlog cloudlog |
|
Weaknesses | CWE-89 | |
CPEs | cpe:2.3:a:cloudlog:cloudlog:*:*:*:*:*:*:*:* | |
Vendors & Products |
Cloudlog
Cloudlog cloudlog |
|
Metrics |
cvssV3_1
|
Tue, 01 Oct 2024 19:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A SQL Injection vulnerability was discovered in Cloudlog 2.6.15, specifically within the get_station_info()function located in the file /application/models/Oqrs_model.php. The vulnerability is exploitable via the station_id parameter. | |
References |
|
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2024-10-01T00:00:00
Updated: 2024-10-01T19:56:03.076Z
Reserved: 2024-09-11T00:00:00
Link: CVE-2024-45999
Vulnrichment
Updated: 2024-10-01T19:43:39.002Z
NVD
Status : Modified
Published: 2024-10-01T20:15:05.390
Modified: 2024-11-21T09:38:21.337
Link: CVE-2024-45999
Redhat
No data.