High severity8.8NVD Advisory· Published Oct 15, 2024· Updated Jun 17, 2026
CVE-2024-9968
CVE-2024-9968
Description
WebEIP v3.0 from
NewType does not properly validate user input, allowing remote attackers with regular privilege to inject SQL commands to read, modify, and delete data stored in database. The affected product is no longer maintained. It is recommended to upgrade to the new product.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2= 3.0+ 1 more
- (no CPE)range: = 3.0
- (no CPE)range: 3.0
Patches
Vulnerability mechanics
References
2- www.twcert.org.tw/en/cp-139-8133-2cc3a-2.htmlnvdThird Party Advisory
- www.twcert.org.tw/tw/cp-132-8132-160bb-1.htmlnvdThird Party Advisory
News mentions
0No linked articles in our index yet.