CVE-2024-22923
CVSS 3.1 Score 9.8 of 10 (high)
Details
Published Feb 13, 2024
Updated: Feb 27, 2024
CWE ID 89
Summary
CVE-2024-22923 is a newly disclosed SQL injection vulnerability affecting adv radius version 2.2.5. A local attacker can exploit this flaw by introducing a maliciously crafted script, allowing them to execute arbitrary code on the targeted system. This vulnerability poses a significant risk, as successful exploitation could lead to unauthorized system access, data theft, or even complete system compromise. It is strongly recommended that affected organizations apply the necessary patches as soon as possible to mitigate this threat.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share