CVE-2024-7732

Publication date

2024-08-14 06:55:59

Family

twcert

State

PUBLISHED

Description

Dr.ID Access Control System from SECOM does not properly validate a specific page parameter, allowing unauthenticated remote attackers to inject SQL commands to read, modify, and delete database contents.