HIGH
Planet eStream before 6.72.10.07 allows a remote attacker (who is a publisher or admin) to obtain access to all records stored in the database, and achieve the ability to execute arbitrary SQL commands, via Search (the StatisticsResults.aspx flt parameter)
Published Dec 25, 2022
7.2
HIGHCVSS 3.1
EPSS 1.29%
Description
Affected products
Remediation
References (1)
Change history (0)
No recorded changes yet.