SQL injection vulnerability in Gescen on the centrosdigitales.net platform. This vulnerability allows an attacker to send a specially crafted SQL query to the pass parameter and retrieve all the data stored in the database.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-44081 | SQL injection vulnerability in Gescen on the centrosdigitales.net platform. This vulnerability allows an attacker to send a specially crafted SQL query to the pass parameter and retrieve all the data stored in the database. |
Fixes
Solution
The vulnerability has been fixed in the latest version of the product.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: INCIBE
Published:
Updated: 2024-08-01T20:40:47.177Z
Reserved: 2024-05-03T09:19:35.061Z
Link: CVE-2024-4466
Updated: 2024-08-01T20:40:47.177Z
Status : Awaiting Analysis
Published: 2024-05-03T12:15:12.160
Modified: 2024-11-21T09:42:52.820
Link: CVE-2024-4466
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD