A vulnerability classified as critical was found in gopeak MasterLab up to 3.3.10. This vulnerability affects the function sqlInject of the file app/ctrl/Framework.php of the component HTTP POST Request Handler. The manipulation of the argument pwd leads to sql injection. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-249148.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published: 2023-12-29T01:31:04.615Z

Updated: 2024-08-02T08:50:08.408Z

Reserved: 2023-12-28T08:33:38.996Z

Link: CVE-2023-7145

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2023-12-29T02:15:45.180

Modified: 2024-05-17T02:34:13.250

Link: CVE-2023-7145

cve-icon Redhat

No data.