Beveiligingsadvies

CVE-2024-42844

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-03-06 00:00:00
Laatst bijgewerkt 2025-03-06 16:13:22
Toegewezen door mitre
CVSS-score 8.1
Status PUBLISHED

Beschrijving

A SQL Injection vulnerability has been identified in EPICOR Prophet 21 (P21) up to 23.2.5232. This vulnerability allows authenticated remote attackers to execute arbitrary SQL commands through unsanitized user input fields to obtain unauthorized information