Lucene search

K
prionPRIOn knowledge basePRION:CVE-2020-14159
HistoryJun 15, 2020 - 7:15 p.m.

Sql injection

2020-06-1519:15:00
PRIOn knowledge base
www.prio-n.com
3

8.7 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

43.0%

By using an Automate API in ConnectWise Automate before 2020.5.178, a remote authenticated user could execute commands and/or modifications within an individual Automate instance by triggering an SQL injection vulnerability in /LabTech/agent.aspx. This affects versions before 2019.12.337, 2020 before 2020.1.53, 2020.2 before 2020.2.85, 2020.3 before 2020.3.114, 2020.4 before 2020.4.143, and 2020.5 before 2020.5.178.

8.7 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

43.0%

Related for PRION:CVE-2020-14159