VYPR
Unrated severityNVD Advisory· Published Mar 21, 2024· Updated Aug 27, 2024

SQL injection vulnerability in Sentrifugo

CVE-2024-29872

Description

SQL injection vulnerability in Sentrifugo 3.2, through /sentrifugo/index.php/empscreening/add, 'agencyids' parameter. The exploitation of this vulnerability could allow a remote user to send a specially crafted query to the server and extract all the data from it.

Affected products

1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.