cve/2023/CVE-2023-34210.md
2024-05-25 21:48:12 +02:00

804 B

CVE-2023-34210

Description

SQL Injection in create customer group function in EasyUse MailHunter Ultimate 2023 and earlier allow remote authenticated users to execute arbitrary SQL commands via the ctl00$ContentPlaceHolder1$txtCustSQL parameter.

POC

Reference

No PoCs from references.

Github