CVE-2024-7731

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Aug 14, 2024
Updated: Aug 22, 2024
CWE ID 89

Summary

CVE-2024-7731 is a vulnerability affecting the Dr.ID Access Control System from SECOM. This issue arises due to insufficient validation of a page parameter. As a consequence, unauthenticated remote attackers can inject SQL commands, leading to potential data manipulation. The vulnerability permits attackers to read, modify, and delete sensitive database information. This poses a significant risk to organizations using the Dr.ID Access Control System and highlights the importance of implementing robust input validation measures.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share