CVE-2024-9982
15.10.2024, 08:15
AIM LINE Marketing Platform from Esi Technology does not properly validate a specific query parameter. When the LINE Campaign Module is enabled, unauthenticated remote attackers can inject arbitrary FetchXml commands to read, modify, and delete database content.
Awaiting analysis
This vulnerability is currently awaiting analysis.