Home
CRITICAL: 9.3 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:N/SC:H/SI:H/SA:NDefault status
unaffected
Any version before 25.2 HF1
affected
25.2 HF1 or later
unaffected
Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Delinea Cloud Suite allows Argument Injection.This issue affects Cloud Suite: before 25.2 HF1.
Problem types
CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
Product status
Any version before 25.2 HF1
25.2 HF1 or later
Credits
Jess Parker (jparker@calottery.com)
Radu Enachi (renachi@calottery.com)
References
docs.delinea.com/...suite/release-notes/cloud-suite/25.2.htm
delinea.com/security-advisories