VYPR
Critical severity9.8NVD Advisory· Published Mar 12, 2024· Updated Jun 17, 2026

CVE-2024-1301

CVE-2024-1301

Description

SQL injection vulnerability in Badger Meter Monitool affecting versions 4.6.3 and earlier. A remote attacker could send a specially crafted SQL query to the server via the j_username parameter and retrieve the information stored in the database.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • cpe:2.3:a:badgermeter:monitool:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:badgermeter:monitool:*:*:*:*:*:*:*:*range: <4.7
    • (no CPE)range: <=4.6.3
    • (no CPE)range: 4.6.3

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.