Fiche vulnérabilité
CVE-2023-2889 : faille critique veom service tracking (CVSS 9.8)
Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Veon Computer Service Tracking Software allows SQL Injection. This issue affects Service Tracking Software: before crm 2.0.
En bref
- Sévérité
- Critique (CVSS 9.8)
- Vecteur CVSS
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- Exploitation active
- Non signalée par la CISA
- Publication
- 22 nov. 2023
- Dernière mise à jour
- 17 juin 2026
Produits concernés
- veom service tracking