Dell SCG, versions prior to 5.22.00.00, contain a SQL Injection Vulnerability in the SCG UI for an internal assets REST API. A remote authenticated attacker could potentially exploit this vulnerability, leading to the execution of certain SQL commands on the application's backend database causing potential unauthorized access and modification of application data.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: dell

Published: 2024-06-13T15:09:31.764Z

Updated: 2024-08-02T01:10:54.079Z

Reserved: 2024-03-18T08:44:18.922Z

Link: CVE-2024-29168

cve-icon Vulnrichment

Updated: 2024-08-02T01:10:54.079Z

cve-icon NVD

Status : Analyzed

Published: 2024-06-13T15:15:52.433

Modified: 2024-08-06T15:28:10.527

Link: CVE-2024-29168

cve-icon Redhat

No data.