Skip to content

Instantly share code, notes, and snippets.

@whiteman007
Last active February 17, 2024 21:29
Show Gist options
  • Save whiteman007/2210588908db7f5daf7402283d68fab2 to your computer and use it in GitHub Desktop.
Save whiteman007/2210588908db7f5daf7402283d68fab2 to your computer and use it in GitHub Desktop.
CVE ID: CVE-2024-22923
Affected Product:
Adv Raduis
Affected Version: 2.2.5
Vulnerability Type:
SQL Injection
Root Cause:
Failure to properly sanitize user inputs in the Adv Raduis application, leading to the possibility of unauthorized SQL query injection.
Vulnerability Description: This CVE refers to a SQL Injection vulnerability in Adv Raduis, providing attackers an opportunity to execute unauthorized SQL queries on the database. Successful exploitation of this vulnerability allows the attacker to access sensitive data, manipulate the database, or execute other malicious commands.
Impact:
Successful exploitation of this vulnerability can lead to serious privacy and security breaches, including unauthorized access to sensitive data and data manipulation, potentially resulting in financial losses or negative reputation for the affected organization.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment