CVE Published: 02/09/2024 |
CVE Updated: 03/09/2024 |
CVE Year: 2024 Source: TR-CERT |
Vendor: NAC Telecommunication Systems Inc. |
Product: NACPremium Status : PUBLISHED
CVE-2024-6919 Description
Improper Neutralization of Special Elements used in an SQL Command (\'SQL Injection\') vulnerability in NAC Telecommunication Systems Inc. NACPremium allows Blind SQL Injection.This issue affects NACPremium: through 01082024.
CWE-ID: CWE-89 CWE Name: CWE-89 Improper Neutralization of Special Elements used in an SQL Command (
SQL Injection
) Source: NAC Telecommunication Systems Inc.
Common Attack Pattern Enumeration and Classification (CAPEC)