Dell SCG, versions prior to 5.22.00.00, contain a SQL Injection Vulnerability in the SCG UI for an internal assets REST API. A remote authenticated attacker could potentially exploit this vulnerability, leading to the execution of certain SQL commands on the application's backend database causing potential unauthorized access and modification of application data.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: dell
Published: 2024-06-13T15:09:31.764Z
Updated: 2024-06-13T18:22:43.359Z
Reserved: 2024-03-18T08:44:18.922Z
Link: CVE-2024-29168
JSON object: View
NVD Information
Status : Awaiting Analysis
Published: 2024-06-13T15:15:52.433
Modified: 2024-06-13T18:35:19.777
Link: CVE-2024-29168
JSON object: View
Redhat Information
No data.
CWE