VYPR
Unrated severityNVD Advisory· Published Mar 22, 2024· Updated Aug 13, 2024

SQL injection vulnerability in the CIGESv2 system

CVE-2024-2723

Description

SQL injection vulnerability in the CIGESv2 system, through /ajaxSubServicios.php, in the 'idServicio' parameter. The exploitation of this vulnerability could allow a remote user to retrieve all data stored in the database by sending a specially crafted SQL query.

Affected products

2

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.