In WS_FTP Server versions prior to 8.7.4 and 8.8.2, a SQL injection vulnerability exists in the WS_FTP Server manager interface. An attacker may be able to infer information about the structure and contents of the database and execute SQL statements that alter or delete database elements.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: ProgressSoftware

Published: 2023-09-27T14:50:18.549Z

Updated: 2024-08-02T18:24:54.727Z

Reserved: 2023-08-08T19:44:41.112Z

Link: CVE-2023-40046

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2023-09-27T15:18:58.103

Modified: 2023-09-27T19:33:00.803

Link: CVE-2023-40046

cve-icon Redhat

No data.