Multiple SQL Injection vulnerabilities exist in the reporting application. A user with advanced report application access rights can exploit the SQL injection, allowing them to execute commands on the underlying operating system with elevated privileges.
2025-01-10T22:15:27.033
2025-12-18T15:05:22.270
Analyzed
CVSSv3.1: 8.3 (HIGH)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | arista | ng_firewall | < 17.2 | Yes |