High severity8.8NVD Advisory· Published Jun 25, 2023· Updated Jun 17, 2026
CVE-2023-36663
CVE-2023-36663
Description
it-novum openITCOCKPIT (aka open IT COCKPIT) 4.6.4 before 4.6.5 allows SQL Injection (by authenticated users) via the sort parameter of the API interface.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:it-novum:openitcockpit:4.6.4:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:it-novum:openitcockpit:4.6.4:*:*:*:*:*:*:*
- (no CPE)
- (no CPE)range: <4.6.5
Patches
Vulnerability mechanics
References
2- github.com/it-novum/openITCOCKPIT/pull/1519/filesnvdPatch
- openitcockpit.io/2023/2023/06/13/openitcockpit-4-6-5-released-security-update/nvdRelease NotesVendor Advisory
News mentions
0No linked articles in our index yet.