Lucene search

K

Help Desk Server Security Vulnerabilities

cve
cve

CVE-2021-43609

An issue was discovered in Spiceworks Help Desk Server before 1.3.3. A Blind Boolean SQL injection vulnerability within the order_by_for_ticket function in app/models/reporting/database_query.rb allows an authenticated attacker to execute arbitrary SQL commands via the sort parameter. This can be l...

9.9CVSS

8.9AI Score

0.003EPSS

2023-11-09 12:15 AM
30