CVE-2024-32736

Publication date

2024-05-09 14:57:38

Family

tenable

State

PUBLISHED

Description

A sql injection vulnerability exists in CyberPower PowerPanel Enterprise prior to v2.8.3. An unauthenticated remote attacker can leak sensitive information via the "query_utask_verbose" function within MCUDBHelper.