VYPR
Unrated severityNVD Advisory· Published May 9, 2024· Updated Aug 2, 2024

CyberPower PowerPanel Enterprise SQL Injection

CVE-2024-32738

Description

A sql injection vulnerability exists in CyberPower PowerPanel Enterprise prior to v2.8.3. An unauthenticated remote attacker can leak sensitive information via the "query_ptask_lean" function within MCUDBHelper.

Affected products

1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.