CVE-2024-29732

A SQL Injection has been found on SCAN_VISIO eDocument Suite Web Viewer of Abast. This vulnerability allows an unauthenticated user to retrieve, update and delete all the information of database. This vulnerability was found on login page via "user" parameter.
Configurations

No configuration.

History

No history.

Information

Published : 2024-03-21 11:15

Updated : 2024-03-21 12:58


NVD link : CVE-2024-29732

Mitre link : CVE-2024-29732

CVE.ORG link : CVE-2024-29732


JSON object : View

Products Affected

No product.

CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')