ZeroHour

CVE-2024-8329

CVSS 3.1
8.8 high
EPSS
<1%p46
Published
()
Modified
Description

6SHR system from Gether Technology does not properly validate the specific page parameter, allowing remote attackers with regular privilege to inject SQL command to read, modify, and delete database contents.

Vendors
6shr system project
Products
6shr system
Weakness
CWE-89
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.