CVE-2023-22324

Publication date

2023-01-30 00:00:00

Family

jpcert

State

PUBLISHED

Description

SQL injection vulnerability in the CONPROSYS HMI System (CHS) Ver.3.5.0 and earlier allows a remote authenticated attacker to execute an arbitrary SQL command. As a result, information stored in the database may be obtained.