RudderStack SQL Injection (CVE-2023-30625)

Related Vulnerabilities: CVE-2023-30625  

Check Point Reference: CPAI-2023-1354 Date Published: 10 Dec 2023 Severity: High Last Updated: Sunday 10 December, 2023 Source: Industry Reference:CVE-2023-30625
Protection Provided by:

Security Gateway
R81, R80, R77, R75

Who is Vulnerable? RudderStack 1.2.5 and prior
RudderStack rudder-server prior to1.3.0-rc.1 Vulnerability Description An SQL injection vulnerability exists in RudderStack. Successful exploitation of this vulnerability would allow a remote attacker to execute arbitrary SQL commands on the affected system.