Description
SQL injection vulnerability in Sentrifugo 3.2, through /sentrifugo/index.php/reports/businessunits/format/html, 'bunitname' parameter. The exploitation of this vulnerability could allow a remote user to send a specially crafted query to the server and extract all the data from it.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-26862 | SQL injection vulnerability in Sentrifugo 3.2, through /sentrifugo/index.php/reports/businessunits/format/html, 'bunitname' parameter. The exploitation of this vulnerability could allow a remote user to send a specially crafted query to the server and extract all the data from it. |
References
History
Thu, 10 Apr 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Sentrifugo
Sentrifugo sentrifugo |
|
| CPEs | cpe:2.3:a:sentrifugo:sentrifugo:3.2:*:*:*:*:*:*:* | |
| Vendors & Products |
Sentrifugo
Sentrifugo sentrifugo |
|
| Metrics |
ssvc
|
Fri, 24 Jan 2025 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Sapplica
Sapplica sentrifugo |
|
| CPEs | cpe:2.3:a:sapplica:sentrifugo:3.2:*:*:*:*:*:*:* | |
| Vendors & Products |
Sapplica
Sapplica sentrifugo |
Status: PUBLISHED
Assigner: INCIBE
Published:
Updated: 2025-04-10T20:15:41.718Z
Reserved: 2024-03-21T10:29:38.101Z
Link: CVE-2024-29873
Updated: 2024-08-02T01:17:58.362Z
Status : Analyzed
Published: 2024-03-21T14:15:08.520
Modified: 2025-01-24T18:18:29.537
Link: CVE-2024-29873
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD