Security Advisory

CVE-2024-12016

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-03-20 07:25:11
Last updated 2025-03-20 15:09:41
Assigner TR-CERT
State PUBLISHED

Description

Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) vulnerability in CM Informatics CM News allows SQL Injection.This issue affects CM News: through 6.0. NOTE: The vendor was contacted and it was learned that the product is not supported.