Metrics
Affected Vendors & Products
Wed, 30 Oct 2024 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Esafenet
Esafenet cdg |
|
CPEs | cpe:2.3:a:esafenet:cdg:5:*:*:*:*:*:*:* | |
Vendors & Products |
Esafenet
Esafenet cdg |
|
Metrics |
ssvc
|
Wed, 30 Oct 2024 00:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability, which was classified as critical, has been found in ESAFENET CDG 5. Affected by this issue is some unknown functionality of the file /com/esafenet/servlet/policy/HookWhiteListService.java. The manipulation of the argument policyId leads to sql injection. The attack may be launched remotely. The vendor was contacted early about this disclosure but did not respond in any way. | |
Title | ESAFENET CDG HookWhiteListService.java sql injection | |
Weaknesses | CWE-89 | |
References |
| |
Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2024-10-30T00:00:09.706Z
Updated: 2024-10-30T15:00:14.178Z
Reserved: 2024-10-29T17:29:15.348Z
Link: CVE-2024-10500
Updated: 2024-10-30T13:43:44.139Z
Status : Analyzed
Published: 2024-10-30T01:15:02.803
Modified: 2024-11-05T21:02:30.333
Link: CVE-2024-10500
No data.