{ "id": "CVE-2021-26837", "sourceIdentifier": "cve@mitre.org", "published": "2023-09-19T00:15:33.093", "lastModified": "2023-09-19T03:37:18.983", "vulnStatus": "Undergoing Analysis", "descriptions": [ { "lang": "en", "value": "SQL Injection vulnerability in SearchTextBox parameter in Fortra (Formerly HelpSystems) DeliverNow before version 1.2.18, allows attackers to execute arbitrary code, escalate privileges, and gain sensitive information." } ], "metrics": {}, "references": [ { "url": "https://community.helpsystems.com/knowledge-base/rjs/delivernow/overview/", "source": "cve@mitre.org" }, { "url": "https://susos.co/blog/f/cve-disclosure-sedric-louissaints-discovery-of-sql-injection-in", "source": "cve@mitre.org" } ] }