CVE Published: 12/09/2019 |
CVE Updated: 04/08/2024 |
CVE Year: 2019 Source: jpcert |
Vendor: Video Insight VMS |
Product: 7.3.2.5 and earlier Status : PUBLISHED
CVE-2019-5996 Description
SQL injection vulnerability in the Video Insight VMS 7.3.2.5 and earlier allows remote authenticated attackers to execute arbitrary SQL commands via unspecified vectors.
CWE-ID: CWE Name: SQL injection vulnerability in the Video Insight VMS 7.3.2.5 and earlier allows remote authenticated attackers to execute arbitrary SQL commands via unspecified vectors. Source: Video Insight VMS
Common Attack Pattern Enumeration and Classification (CAPEC)