ZeroHour

CVE-2023-3000

CVSS 3.1
9.8 critical
EPSS
<1%p54
Published
()
Modified
Description

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Erikoglu Technology ErMon allows Command Line Execution through SQL Injection, Authentication Bypass. This issue affects ErMon: before 230602.

Vendors
erikogluteknoloji
Products
energy monitoring
Weakness
CWE-89
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.