Beveiligingsadvies

CVE-2024-53544

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-02-24 00:00:00
Laatst bijgewerkt 2025-02-25 14:34:51
Toegewezen door mitre
CVSS-score 9.8
Status PUBLISHED

Beschrijving

NovaCHRON Zeitsysteme GmbH & Co. KG Smart Time Plus v8.x to v8.6 was discovered to contain a SQL injection vulnerability via the getCookieNames method in the smarttimeplus/MySQLConnection endpoint.