2024-01-22 21:00:28 +00:00

28 lines
861 B
JSON

{
"id": "CVE-2023-48118",
"sourceIdentifier": "cve@mitre.org",
"published": "2024-01-22T19:15:08.947",
"lastModified": "2024-01-22T20:28:17.417",
"vulnStatus": "Awaiting Analysis",
"descriptions": [
{
"lang": "en",
"value": "SQL Injection vulnerability in Quest Analytics LLC IQCRM v.2023.9.5 allows a remote attacker to execute arbitrary code via a crafted request to the Common.svc WSDL page."
}
],
"metrics": {},
"references": [
{
"url": "https://github.com/el-dud3rino/CVE-Disclosures/blob/main/Quest%20Analytics%20IQCRM/Proof%20of%20Concept",
"source": "cve@mitre.org"
},
{
"url": "https://github.com/el-dud3rino/CVE-Disclosures/blob/main/README.md",
"source": "cve@mitre.org"
},
{
"url": "https://www.quest-analytics.com/",
"source": "cve@mitre.org"
}
]
}