Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-1861 | A vulnerability was found in ESAFENET CDG V5. It has been classified as critical. Affected is an unknown function of the file /appDetail.jsp. The manipulation of the argument flowId leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way. |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Fri, 16 May 2025 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Esafenet
Esafenet cdg |
|
| CPEs | cpe:2.3:a:esafenet:cdg:5:*:*:*:*:*:*:* | |
| Vendors & Products |
Esafenet
Esafenet cdg |
Wed, 29 Jan 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 28 Jan 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was found in ESAFENET CDG V5. It has been classified as critical. Affected is an unknown function of the file /appDetail.jsp. The manipulation of the argument flowId leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way. | |
| Title | ESAFENET CDG appDetail.jsp sql injection | |
| Weaknesses | CWE-74 CWE-89 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-01-29T14:20:20.599Z
Reserved: 2025-01-28T14:34:04.828Z
Link: CVE-2025-0786
Updated: 2025-01-29T14:20:10.344Z
Status : Analyzed
Published: 2025-01-28T22:15:16.423
Modified: 2025-05-16T15:01:07.353
Link: CVE-2025-0786
No data.
OpenCVE Enrichment
No data.
EUVD