CVE-2024-34532
EUVD-2024-3484106.05.2024, 21:15
A SQL injection vulnerability in Yvan Dotet PostgreSQL Query Deluxe module (aka query_deluxe) 17.x before 17.0.0.4 allows a remote attacker to gain privileges via the query parameter to models/querydeluxe.py:QueryDeluxe::get_result_from_query.
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| query_deluxe | query_deluxe | 17.0 ≤ 𝑥 < 17.0.0.4 | ADP |