CVE-2023-48372

Publication date

2023-12-15 04:18:31

Family

twcert

State

PUBLISHED

Description

ITPison OMICARD EDM s SMS-related function has insufficient validation for user input. An unauthenticated remote attacker can exploit this vulnerability to inject arbitrary SQL commands to access, modify and delete database.