cve/2022/CVE-2022-21234.md
2024-06-18 02:51:15 +02:00

875 B

CVE-2022-21234

Description

An SQL injection vulnerability exists in the EchoAssets.aspx functionality of Lansweeper lansweeper 9.1.20.2. A specially-crafted HTTP request can cause SQL injection. An attacker can make an authenticated HTTP request to trigger this vulnerability.

POC

Reference

Github

No PoCs found on GitHub currently.