Unrated severityNVD Advisory· Published Dec 15, 2023· Updated Aug 2, 2024
ITPison OMICARD EDM 's SMS - SQL Injection
CVE-2023-48372
Description
ITPison OMICARD EDM 's SMS-related function has insufficient validation for user input. An unauthenticated remote attacker can exploit this vulnerability to inject arbitrary SQL commands to access, modify and delete database.
Affected products
1- Range: v6.0.1.5
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.