PT-2024-38078 · Forip Tecnologia · Forip Tecnologia Administração Pabx

Gabriel

·

Published

2024-07-25

·

Updated

2024-09-11

·

CVE-2024-7105

CVSS v2.0

6.5

Medium

VectorAV:N/AC:L/Au:S/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions ForIP Tecnologia Administração PABX version 1.x
Description A critical issue has been discovered, affecting an unknown function of the file /detalheIdUra of the component Lista Ura Page. The manipulation of the id argument leads to SQL injection. This issue can be exploited remotely.
Recommendations For ForIP Tecnologia Administração PABX version 1.x, at the moment, there is no information about a newer version that contains a fix for this issue.

Exploit

Fix

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2024-7105

Affected Products

Forip Tecnologia Administração Pabx