CVE-2024-55159

GFast between v2 to v3.2 was discovered to contain a SQL injection vulnerability via the SortName parameter at /system/loginLog/list.
Configurations

No configuration.

History

12 Mar 2025, 19:15

Type Values Removed Values Added
CWE CWE-89
Summary
  • (es) Se descubrió que GFast entre v2 y v3.2 contenía una vulnerabilidad de inyección SQL a través del parámetro SortName en /system/loginLog/list.
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 4.2

21 Feb 2025, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-02-21 18:15

Updated : 2025-03-12 19:15


NVD link : CVE-2024-55159

Mitre link : CVE-2024-55159

CVE.ORG link : CVE-2024-55159


JSON object : View

Products Affected

No product.

CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')