SQL injection vulnerability in Arconte Áurea, in its 1.5.0.0 version. The exploitation of this vulnerability could allow an attacker to read sensitive data from the database, modify data (insert/update/delete), perform database administration operations and, in some cases, execute commands on the operating system.
Metrics
Affected Vendors & Products
Advisories
Source | ID | Title |
---|---|---|
![]() |
EUVD-2023-53982 | SQL injection vulnerability in Arconte Áurea, in its 1.5.0.0 version. The exploitation of this vulnerability could allow an attacker to read sensitive data from the database, modify data (insert/update/delete), perform database administration operations and, in some cases, execute commands on the operating system. |
Fixes
Solution
This vulnerabilities have been fixed by Fujitsu in version 1.5.0.0, released on 4/4/2022. All new versions of the product, including the latest 1.6.2.3, also include the fixes.
Workaround
No workaround given by the vendor.
References
History
Wed, 25 Sep 2024 15:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|

Status: PUBLISHED
Assigner: INCIBE
Published:
Updated: 2024-09-25T14:17:34.806Z
Reserved: 2023-08-02T11:05:14.556Z
Link: CVE-2023-4092

Updated: 2024-08-02T07:17:11.934Z

Status : Modified
Published: 2023-09-19T13:16:23.133
Modified: 2024-11-21T08:34:22.470
Link: CVE-2023-4092

No data.

No data.