SQL Injection Vulnerability has been found on OpenGnsys product affecting version 1.1.1d (Espeto). This vulnerability allows an attacker to inject malicious SQL code into login page to bypass it or even retrieve all the information stored in the database.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: INCIBE

Published: 2024-04-12T13:47:03.946Z

Updated: 2024-07-05T12:44:44.802Z

Reserved: 2024-04-12T10:44:52.613Z


Link: CVE-2024-3704

JSON object: View

cve-icon NVD Information

Status : Awaiting Analysis

Published: 2024-04-12T14:15:08.743

Modified: 2024-04-15T13:15:51.577


Link: CVE-2024-3704

JSON object: View

cve-icon Redhat Information

No data.

CWE