Critical severity9.1NVD Advisory· Published Nov 15, 2024· Updated Jun 17, 2026
CVE-2024-51164
CVE-2024-51164
Description
Multiple parameters have SQL injection vulnerability in JEPaaS 7.2.8 via /je/login/btnLog/insertBtnLog, which could allow a remote user to submit a specially crafted query, allowing an attacker to retrieve all the information stored in the DB.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2Patches
Vulnerability mechanics
References
2- abcc111.github.io/posts/CVE-2024-51164/nvdExploitThird Party Advisory
- github.com/abcc111/vulns/blob/main/JEPaaS/Multiple%20parameters%20have%20SQL%20injection%20issues%20in%20JEPAAS.mdnvdBroken Link
News mentions
0No linked articles in our index yet.