Beveiligingsadvies

CVE-2023-30788

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2023-05-08 00:00:00
Laatst bijgewerkt 2025-02-04 19:11:04
Toegewezen door Fluid Attacks
CVSS-score 5.4
Status PUBLISHED

Beschrijving

MonicaHQ version 4.0.0 allows an authenticated remote attacker to execute malicious code in the application via CSTI in the `people/add` endpoint and nickName, description, lastName, middleName and firstName parameter.