• caglararli@hotmail.com
  • 05386281520

CVE-2024-10659 | ESAFENET CDG 5 CDGAuthoriseTempletService.java delSystemEncryptPolicy id sql injection

Çağlar Arlı      -    39 Views

CVE-2024-10659 | ESAFENET CDG 5 CDGAuthoriseTempletService.java delSystemEncryptPolicy id sql injection

A vulnerability, which was classified as critical, has been found in ESAFENET CDG 5. Affected by this issue is the function delSystemEncryptPolicy of the file /com/esafenet/servlet/document/CDGAuthoriseTempletService.java. The manipulation of the argument id leads to sql injection. This vulnerability is handled as CVE-2024-10659. The attack may be launched remotely. Furthermore, there is an exploit available.