CVE-2024-32737

7.5HIGH

A sql injection vulnerability exists in CyberPower PowerPanel Enterprise prior to v2.8.3. An unauthenticated remote attacker can leak sensitive information via the "query_contract_result" function wit

Published: 5/14/2024Updated: 10/23/2025

Description

A sql injection vulnerability exists in CyberPower PowerPanel Enterprise prior to v2.8.3. An unauthenticated remote attacker can leak sensitive information via the "query_contract_result" function within MCUDBHelper.

AI AnalysisPowered by AI

Affected Products

cyberpowerpowerpanel

References