SQL Injection Vulnerability has been found on OpenGnsys product affecting version 1.1.1d (Espeto). This vulnerability allows an attacker to inject malicious SQL code into login page to bypass it or even retrieve all the information stored in the database.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: INCIBE
Published: 2024-04-12T13:47:03.946Z
Updated: 2024-08-01T20:20:01.267Z
Reserved: 2024-04-12T10:44:52.613Z
Link: CVE-2024-3704
Vulnrichment
Updated: 2024-08-01T20:20:01.267Z
NVD
Status : Awaiting Analysis
Published: 2024-04-12T14:15:08.743
Modified: 2024-07-05T13:15:10.640
Link: CVE-2024-3704
Redhat
No data.