Security Advisory

CVE-2024-45174

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-09-04 00:00:00
Last updated 2024-09-06 06:03:38
Assigner mitre
State PUBLISHED

Description

An issue was discovered in za-internet C-MOR Video Surveillance 5.2401 and 6.00PL01. Due to improper validation of user-supplied data, different functionalities of the C-MOR web interface are vulnerable to SQL injection attacks. This kind of attack allows an authenticated user to execute arbitrary SQL commands in the context of the corresponding MySQL database.