CVE-2022-24691

An issue was discovered in DSK DSKNet 2.16.136.0 and 2.17.136.5. A SQL Injection vulnerability allows authenticated users to taint database data and extract sensitive information via crafted HTTP requests. The type of SQL Injection is blind boolean based.
Configurations

Configuration 1

cpe:2.3:a:dsk:dsknet:2.17.136.5:*:*:*:*:*:*:*
cpe:2.3:a:dsk:dsknet:2.16.136.0:*:*:*:*:*:*:*

Information

Published : 2022-07-18 01:15

Updated : 2022-07-27 05:34


NVD link : CVE-2022-24691

Mitre link : CVE-2022-24691

Products Affected
No products.
CWE