VYPR

LoMag Inventory Management

by LOGINT

CVEs (2)

  • CVE-2024-32212HigMay 1, 2024
    risk 0.53cvss 8.1epss 0.01

    SQL Injection vulnerability in LOGINT LoMag Inventory Management v1.0.20.120 and before allows an attacker to execute arbitrary code via the ArticleGetGroups, DocAddDocument, ClassClickShop and frmSettings components.

  • CVE-2024-32211MedMay 1, 2024
    risk 0.36cvss 5.5epss 0.00

    An issue in LOGINT LoMag Inventory Management v1.0.20.120 and before allows a local attacker to obtain sensitive information via the UserClass.cs and Settings.cs components.