Fiche vulnérabilité
CVE-2024-6401 : faille critique sfs insuree gl (CVSS 9.8)
Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in SFS Consulting InsureE GL allows SQL Injection. This issue affects InsureE GL: before 4.6.2.
En bref
- Sévérité
- Critique (CVSS 9.8)
- Vecteur CVSS
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- Exploitation active
- Non signalée par la CISA
- Publication
- 16 sept. 2024
- Dernière mise à jour
- 17 juin 2026
Produits concernés
- sfs insuree gl