Vulnerability Details CVE-2023-42237
An issue was discovered in Selesta Visual Access Manager (VAM) prior to 4.42.2. An authenticated attacker can perform SQL Injection in multiple GET parameters of /vam/vam_i_command.php.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 9.9%
CVSS Severity
CVSS v3 Score 3.8
Products affected by CVE-2023-42237
-
cpe:2.3:a:seling:visual_access_manager:4.15.0
-
cpe:2.3:a:seling:visual_access_manager:4.29.0