CVE-2024-32737

7.5HIGH

A sql injection vulnerability exists in CyberPower PowerPanel Enterprise prior to v2.8.3. An unauthenticated remote attacker can leak sensitive information via the "query_contract_result" function wit

Veröffentlicht: 5/14/2024Aktualisiert: 10/23/2025

Beschreibung

A sql injection vulnerability exists in CyberPower PowerPanel Enterprise prior to v2.8.3. An unauthenticated remote attacker can leak sensitive information via the "query_contract_result" function within MCUDBHelper.

KI-AnalyseKI-gestützt

Betroffene Produkte

cyberpowerpowerpanel

Referenzen