Insufficient validation in Bigfix WebUI API App site version < 14 allows an authenticated WebUI user to issue SQL queries via an unparameterized SQL query.
References
Link | Resource |
---|---|
https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0106123 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: HCL
Published: 2023-07-18T17:57:23.111Z
Updated: 2023-07-18T17:57:23.111Z
Reserved: 2023-03-10T03:59:29.452Z
Link: CVE-2023-28019
JSON object: View
NVD Information
Status : Analyzed
Published: 2023-07-18T18:15:11.817
Modified: 2023-07-27T03:53:40.647
Link: CVE-2023-28019
JSON object: View
Redhat Information
No data.
CWE