Security Advisory

CVE-2024-22856

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-04-22 00:00:00
Last updated 2024-11-22 14:45:52
Assigner mitre
State PUBLISHED

Description

A SQL injection vulnerability via the Save Favorite Search function in Axefinance Axe Credit Portal >= v.3.0 allows authenticated attackers to execute unintended queries and disclose sensitive information from DB tables via crafted requests.