ZeroHour

CVE-2023-31433

PoC
CVSS 3.1
8.8 high
EPSS
<1%p59
Published
()
Modified
Description

A SQL injection issue in Logbuch in evasys before 8.2 Build 2286 and 9.x before 9.0 Build 2401 allows authenticated attackers to execute SQL statements via the welche parameter.

Vendors
evasys
Products
evasys
Weakness
CWE-89
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.