CVE-2022-1361
17.05.2022, 21:15
The affected On-Premise cnMaestro is vulnerable to a pre-auth data exfiltration through improper neutralization of special elements used in an SQL command. This could allow an attacker to exfiltrate data about other users accounts and devices.
Vendor | Product | Version |
---|---|---|
cambiumnetworks | cnmaestro | 2.4.2 |
cambiumnetworks | cnmaestro | 3.0.0 |
cambiumnetworks | cnmaestro | 3.0.3 |
𝑥
= Vulnerable software versions