mirror of
https://github.com/0xMarcio/cve.git
synced 2025-11-28 18:48:49 +00:00
720 B
720 B
CVE-2024-23763
Description
SQL Injection vulnerability in Gambio through 4.9.2.0 allows attackers to run arbitrary SQL commands via crafted GET request using modifiers[attribute][] parameter.
POC
Reference
- https://herolab.usd.de/security-advisories/usd-2023-0047/
- https://herolab.usd.de/security-advisories/usd-2023-0047/