← volver
CVE-2025-2927

ESAFENET CDG getFileTypeList.jsp sql injection

CVSS 6.9 MEDIUMEPSS 0.5%CWE-74CWE-89
A vulnerability was found in ESAFENET CDG 5.6.3.154.205. It has been classified as critical. Affected is an unknown function of the file /parameter/getFileTypeList.jsp. The manipulation of the argument typename leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N
Productos afectados
ESAFENET · CDG

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →