Home
MEDIUM: 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:NDefault status
unaffected
6.1.03 (custom)
affected
7.2.01.01 (custom)
affected
Lite7.2.01.01 (custom)
affected
Description
There are SQL injection vulnerabilities in multiple interfaces of the GoldenDB database product. Attackers can exploit these interfaces to inject commands and extract sensitive database information.
Problem types
CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
Product status
6.1.03 (custom)
7.2.01.01 (custom)
Lite7.2.01.01 (custom)
References
support.zte.com.cn/...ui/bulletin/detail/4693390139849392210