ZeroHour

CVE-2022-24628

PoC
CVSS 3.1
7.2 high
EPSS
1%p67
Published
()
Modified
Description

An issue was discovered in AudioCodes Device Manager Express through 7.8.20002.47752. It is authenticated SQL injection in the id parameter of IPPhoneFirmwareEdit.php.

Vendors
audiocodes
Products
device manager express
Weakness
CWE-89
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.