ZeroHour

CVE-2024-9134

PoC
CVSS 3.1
8.3 high
EPSS
<1%p48
Published
()
Modified
Description

Multiple SQL Injection vulnerabilities exist in the reporting application. A user with advanced report application access rights can exploit the SQL injection, allowing them to execute commands on the underlying operating system with elevated privileges.

Vendors
arista
Products
ng firewall
Weakness
CWE-89
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:L

In the news

No ingested article mentions this CVE yet.