DigiWin EasyFlow .NET lacks... CVE-2024-4893

- AV AC AU C I A
发布: 2024-10-05
修订: 2024-10-05

DigiWin EasyFlow .NET lacks validation for certain input parameters, allowing remote attackers to inject arbitrary SQL commands. This vulnerability enables unauthorized access to read, modify, and delete database records, as well as execute system commands.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息