PT-2023-17639 · Forcepoint · Forcepoint Cloud Security Gateway (Csg) Portal

Published

2023-06-15

·

Updated

2023-06-30

·

CVE-2023-2080

CVSS v3.1

8.5

High

VectorAV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Forcepoint Cloud Security Gateway (CSG) Portal (affected versions not specified)
Description The issue is related to an SQL Injection vulnerability, specifically an Improper Neutralization of Special Elements used in an SQL Command. This allows for Blind SQL Injection in the Forcepoint Cloud Security Gateway (CSG) Portal on Web Cloud Security Gateway and Email Security Cloud.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2023-2080

Affected Products

Forcepoint Cloud Security Gateway (Csg) Portal