Fiche vulnérabilité
CVE-2023-1050 : faille critique askoc web report system (CVSS 9.8)
Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in As Koc Energy Web Report System allows SQL Injection. This issue affects Web Report System: before 23.03.10.
En bref
- Sévérité
- Critique (CVSS 9.8)
- Vecteur CVSS
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- Exploitation active
- Non signalée par la CISA
- Publication
- 23 mars 2023
- Dernière mise à jour
- 17 juin 2026
Produits concernés
- askoc web report system