CVE-2023-37690

CVSS 3.1 Score 4.8 of 10 (medium)

Details

Published Aug 8, 2023
Updated: Nov 14, 2023
CWE ID 79

Summary

CVE-2023-37690 is a newly disclosed vulnerability affecting the Maid Hiring Management System v1.0. This issue allows an attacker to inject malicious SQL commands through the Search Maid page, potentially gaining unauthorized access to sensitive data or even taking control of the system. The vulnerability may lead to data breaches, privacy violations, or even system compromise. It is imperative that users of this system upgrade to the latest version or apply the necessary patches as soon as possible to mitigate the risk. SQL injection vulnerabilities have long been a significant threat vector, and their exploitation can result in severe consequences if not addressed promptly.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share