SQL Injection Vulnerability has been found on OpenGnsys product affecting version 1.1.1d (Espeto). This vulnerability allows an attacker to inject malicious SQL code into login page to bypass it or even retrieve all the information stored in the database.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: INCIBE
Published: 2024-04-12T13:47:03.946Z
Updated: 2024-07-05T12:44:44.802Z
Reserved: 2024-04-12T10:44:52.613Z
Link: CVE-2024-3704
JSON object: View
NVD Information
Status : Awaiting Analysis
Published: 2024-04-12T14:15:08.743
Modified: 2024-04-15T13:15:51.577
Link: CVE-2024-3704
JSON object: View
Redhat Information
No data.
CWE