CVE-2024-7731
14.08.2024, 07:15
Dr.ID Access Control System from SECOM does not properly validate a specific page parameter, allowing unauthenticated remote attackers to inject SQL commands to read, modify, and delete database contents.
Vendor | Product | Version |
---|---|---|
secom | dr.id_access_control | 𝑥 < 3.6.3 |
𝑥
= Vulnerable software versions