Description
A CWE-89: Improper Neutralization of Special Elements vulnerability used in an SQL Command
('SQL Injection') vulnerability exists that could allow a user already authenticated on DCE to
access unauthorized content, change, or delete content, or perform unauthorized actions when
tampering with the alert settings of endpoints on DCE.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-41116 | A CWE-89: Improper Neutralization of Special Elements vulnerability used in an SQL Command ('SQL Injection') vulnerability exists that could allow a user already authenticated on DCE to access unauthorized content, change, or delete content, or perform unauthorized actions when tampering with the alert settings of endpoints on DCE. |
References
History
Thu, 07 Nov 2024 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: schneider
Published:
Updated: 2024-11-07T14:46:44.245Z
Reserved: 2023-06-28T14:14:13.863Z
Link: CVE-2023-37196
Updated: 2024-08-02T17:09:32.952Z
Status : Modified
Published: 2023-07-12T07:15:10.377
Modified: 2024-11-21T08:11:10.310
Link: CVE-2023-37196
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD