CVE-2024-11025

An authenticated attacker with low privileges may use a SQL Injection vulnerability in the affected products administration panel to gain read and write access to a specific log file of the device.
Configurations

No configuration.

History

No history.

Information

Published : 2024-11-27 11:17

Updated : 2024-11-27 11:17


NVD link : CVE-2024-11025

Mitre link : CVE-2024-11025

CVE.ORG link : CVE-2024-11025


JSON object : View

Products Affected

No product.

CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')