CVE-2021-47704

Publication date

2025-12-09 20:36:54

Family

VulnCheck

State

PUBLISHED

Description

OpenBMCS 2.4 contains an SQL injection vulnerability that allows authenticated attackers to manipulate database queries by injecting arbitrary SQL code. Attackers can send GET requests to /debug/obix_test.php with malicious id values to extract database information.