Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2024-51165

SQL injection vulnerability in JEPAAS7.2.8, via /je/rbac/rbac/loadLoginCount in the dateVal parameter, which could allow a remote user to submit a specially crafted query, allowing an attacker to retrieve all the information stored in the DB.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 32.6%
CVSS Severity
CVSS v3 Score 7.5
Products affected by CVE-2024-51165
  • Ketr » Jepaas » Version: 7.2.8
    cpe:2.3:a:ketr:jepaas:7.2.8


Contact Us

Shodan ® - All rights reserved