{ "id": "CVE-2023-48118", "sourceIdentifier": "cve@mitre.org", "published": "2024-01-22T19:15:08.947", "lastModified": "2024-01-22T20:28:17.417", "vulnStatus": "Awaiting Analysis", "descriptions": [ { "lang": "en", "value": "SQL Injection vulnerability in Quest Analytics LLC IQCRM v.2023.9.5 allows a remote attacker to execute arbitrary code via a crafted request to the Common.svc WSDL page." } ], "metrics": {}, "references": [ { "url": "https://github.com/el-dud3rino/CVE-Disclosures/blob/main/Quest%20Analytics%20IQCRM/Proof%20of%20Concept", "source": "cve@mitre.org" }, { "url": "https://github.com/el-dud3rino/CVE-Disclosures/blob/main/README.md", "source": "cve@mitre.org" }, { "url": "https://www.quest-analytics.com/", "source": "cve@mitre.org" } ] }