The affected On-Premise cnMaestro is vulnerable to a pre-auth data exfiltration through improper neutralization of special elements used in an SQL command. This could allow an attacker to exfiltrate data about other user’s accounts and devices.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published: 2022-05-17T20:18:28.888642Z

Updated: 2024-09-17T04:28:47.742Z

Reserved: 2022-04-14T00:00:00

Link: CVE-2022-1361

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2022-05-17T21:15:08.157

Modified: 2022-06-07T01:58:18.547

Link: CVE-2022-1361

cve-icon Redhat

No data.