A vulnerability classified as critical has been found in Netentsec NS-ASG Application Security Gateway 6.3. This affects an unknown part of the file /admin/config_ISCGroupNoCache.php. The manipulation of the argument GroupId leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-259713 was assigned to this vulnerability.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-32044 | A vulnerability classified as critical has been found in Netentsec NS-ASG Application Security Gateway 6.3. This affects an unknown part of the file /admin/config_ISCGroupNoCache.php. The manipulation of the argument GroupId leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-259713 was assigned to this vulnerability. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Thu, 06 Feb 2025 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Netentsec
Netentsec application Security Gateway |
|
| CPEs | cpe:2.3:a:netentsec:application_security_gateway:6.3:*:*:*:*:*:*:* | |
| Vendors & Products |
Netentsec
Netentsec application Security Gateway |
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2024-08-12T13:10:23.525Z
Reserved: 2024-04-08T10:11:47.982Z
Link: CVE-2024-3457
Updated: 2024-08-01T20:12:07.690Z
Status : Analyzed
Published: 2024-04-08T18:15:08.623
Modified: 2025-02-06T19:06:55.503
Link: CVE-2024-3457
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD