Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in SFS Consulting InsureE GL allows SQL Injection.This issue affects InsureE GL: before 4.6.2.
History

Fri, 20 Sep 2024 17:30:00 +0000

Type Values Removed Values Added
First Time appeared Sfs
Sfs insuree Gl
CPEs cpe:2.3:a:sfs:insuree_gl:*:*:*:*:*:*:*:*
Vendors & Products Sfs
Sfs insuree Gl
References
Metrics cvssV3_1

{'score': 9.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}


Mon, 16 Sep 2024 16:30:00 +0000

Type Values Removed Values Added
First Time appeared Sfs Consulting
Sfs Consulting insuree Gl
CPEs cpe:2.3:a:sfs_consulting:insuree_gl:*:*:*:*:*:*:*:*
Vendors & Products Sfs Consulting
Sfs Consulting insuree Gl
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Mon, 16 Sep 2024 15:15:00 +0000

Type Values Removed Values Added
Description Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in SFS Consulting InsureE GL allows SQL Injection.This issue affects InsureE GL: before 4.6.2.
Title SQLi in SFS Consulting's InsureE GL
Weaknesses CWE-89
References
Metrics cvssV4_0

{'score': 9.2, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:H/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: TR-CERT

Published: 2024-09-16T14:55:26.359Z

Updated: 2024-09-16T15:19:30.834Z

Reserved: 2024-06-28T12:02:24.698Z

Link: CVE-2024-6401

cve-icon Vulnrichment

Updated: 2024-09-16T15:19:25.492Z

cve-icon NVD

Status : Analyzed

Published: 2024-09-16T15:15:17.073

Modified: 2024-09-20T17:07:55.740

Link: CVE-2024-6401

cve-icon Redhat

No data.