A blind SQL Injection vulnerability in Nozomi Networks Guardian and CMC, due to improper input validation in the alerts_count component, allows an authenticated attacker to execute arbitrary SQL queries on the DBMS used by the web application. Authenticated users can extract arbitrary information from the DBMS in an uncontrolled way.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: Nozomi

Published: 2023-08-09T08:39:13.045Z

Updated: 2024-08-02T10:35:33.314Z

Reserved: 2023-01-24T10:39:24.272Z

Link: CVE-2023-23574

cve-icon Vulnrichment

Updated: 2024-08-02T10:35:33.314Z

cve-icon NVD

Status : Modified

Published: 2023-08-09T09:15:13.767

Modified: 2024-05-28T13:15:09.070

Link: CVE-2023-23574

cve-icon Redhat

No data.