Insufficient input sanitization in the documentation feature of Devolutions Server 2022.3.12 and earlier allows an authenticated attacker to perform an SQL Injection, potentially resulting in unauthorized access to system resources.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://devolutions.net/security/advisories/DEVO-2023-0003 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: DEVOLUTIONS
Published: 2023-02-22T13:42:04.305Z
Updated: 2024-08-02T05:32:45.459Z
Reserved: 2023-02-22T13:27:32.322Z
Link: CVE-2023-0953
Vulnrichment
No data.
NVD
Status : Modified
Published: 2023-03-01T08:15:11.713
Modified: 2024-11-21T07:38:10.397
Link: CVE-2023-0953
Redhat
No data.