CVE-2023-38905
17.08.2023, 19:15
SQL injection vulnerability in Jeecg-boot v.3.5.0 and before allows a local attacker to cause a denial of service via the Benchmark, PG_Sleep, DBMS_Lock.Sleep, Waitfor, DECODE, and DBMS_PIPE.RECEIVE_MESSAGE functions.
Vendor | Product | Version |
---|---|---|
jeecg | jeecg_boot | 𝑥 ≤ 3.5.0 |
𝑥
= Vulnerable software versions