Dell Data Lakehouse, version(s) 1.0.0.0 and 1.1.0.0, contain(s) an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability. An unauthenticated attacker with local access could potentially exploit this vulnerability, leading to Information disclosure.
2024-10-25T11:15:17.930
2024-10-31T00:01:05.127
Analyzed
CVSSv3.1: 2.9 (LOW)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | dell | data_lakehouse | 1.0.0.0 | Yes |
Application | dell | data_lakehouse | 1.1.0.0 | Yes |