Metrics
Affected Vendors & Products
Tue, 05 Nov 2024 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Esafenet
Esafenet cdg |
|
| CPEs | cpe:2.3:a:esafenet:cdg:5:*:*:*:*:*:*:* | |
| Vendors & Products |
Esafenet
Esafenet cdg |
|
| Metrics |
ssvc
|
Fri, 01 Nov 2024 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability, which was classified as critical, was found in ESAFENET CDG 5. This affects the function deleteHook of the file /com/esafenet/servlet/policy/HookService.java. The manipulation of the argument hookId leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. | |
| Title | ESAFENET CDG HookService.java deleteHook sql injection | |
| Weaknesses | CWE-89 | |
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2024-11-01T15:31:15.299Z
Updated: 2024-11-05T15:27:13.864Z
Reserved: 2024-11-01T08:58:45.994Z
Link: CVE-2024-10660
Updated: 2024-11-05T15:27:09.748Z
Status : Analyzed
Published: 2024-11-01T16:15:07.130
Modified: 2024-11-05T17:04:45.093
Link: CVE-2024-10660
No data.