CVE-2022-1361
EUVD-2022-2468217.05.2022, 21:15
The affected On-Premise cnMaestro is vulnerable to a pre-auth data exfiltration through improper neutralization of special elements used in an SQL command. This could allow an attacker to exfiltrate data about other user’s accounts and devices.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| cambiumnetworks | cnmaestro | 2.4.2 |
| cambiumnetworks | cnmaestro | 3.0.0 |
| cambiumnetworks | cnmaestro | 3.0.3 |
𝑥
= Vulnerable software versions