An authenticated and authorized agent user could potentially gain administrative access via an SQLi vulnerability to Capsule8 Console between versions 4.6.0 and 4.9.1.
References
Link | Resource |
---|---|
https://www.sophos.com/en-us/security-advisories/sophos-sa-20220201-cap8-console-sqli | Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: Sophos
Published: 2022-02-02T11:31:20
Updated: 2022-02-02T11:31:20
Reserved: 2022-01-25T00:00:00
Link: CVE-2022-0366
JSON object: View
NVD Information
Status : Analyzed
Published: 2022-02-02T12:15:08.277
Modified: 2023-08-08T14:21:49.707
Link: CVE-2022-0366
JSON object: View
Redhat Information
No data.
CWE