NA

CVE-2023-4037

Published: 04/10/2023 Updated: 05/10/2023
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 0

Vulnerability Summary

Blind SQL injection vulnerability in the Conacwin 3.7.1.2 web interface, the exploitation of which could allow a local malicious user to obtain sensitive data stored in the database by sending a specially crafted SQL query to the xml parameter.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

setelsa-security conacwin 3.7.1.2