Fiche vulnérabilité
CVE-2022-1358 : faille élevée cambiumnetworks cnmaestro (CVSS 7.5)
Description
The affected On-Premise is vulnerable to data exfiltration through improper neutralization of special elements used in an SQL command. This could allow an attacker to exfiltrate and dump all data held in the cnMaestro database.
En bref
- Sévérité
- Élevée (CVSS 7.5)
- Vecteur CVSS
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
- Exploitation active
- Non signalée par la CISA
- Publication
- 17 mai 2022
- Dernière mise à jour
- 17 juin 2026
Produits concernés
- cambiumnetworks cnmaestro