CRITICAL
SQLi in SFS Consulting's InsureE GL
Published Sep 16, 2024
9.2
CRITICALCVSS 4.0
EPSS 0.42%
Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in SFS Consulting InsureE GL allows SQL Injection.
This issue affects InsureE GL: before 4.6.2.
Affected products
-
Affected
- ≥ 0, < 4.6.2
Default status is the baseline for the product. Each version can override it (patched versions can be marked unaffected).
| Vendor | Product | Default status | Versions |
|---|---|---|---|
| SFS Consulting | InsureE GL | unaffected | Affected
|
- < 4.6.2
-
Affected
- ≥ 0, < 4.6.2
Default status is the baseline for the product. Each version can override it (patched versions can be marked unaffected).
| Vendor | Product | Default status | Versions |
|---|---|---|---|
| Sfs Consulting | Insuree GL | unknown | Affected
|
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (4)
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2024-47506 Advisory
- https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-24-1475 government-resource
- https://vuldb.com/?id.277555 Third Party Advisory
- https://www.usom.gov.tr/bildirim/tr-24-1475 government-resourcebroken-linkBroken Link
| Link | Providers | Tags |
|---|---|---|
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2024-47506 | Advisory | |
| https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-24-1475 | government-resource | |
| https://vuldb.com/?id.277555 | Third Party Advisory | |
| https://www.usom.gov.tr/bildirim/tr-24-1475 | government-resourcebroken-linkBroken Link |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner TR-CERT
Published Sep 16, 2024
Updated Jun 3, 2026
Reserved Jun 28, 2024
Link CVE-2024-6401
CISA Vulnrichment
Updated Sep 16, 2024
Red Hat
No data
GitHub
No data