CVE-2024-55984
CVSS 3.1 Score 8.5 of 10 (high)
Details
Summary
CVE-2024-55984 is an SQL injection vulnerability affecting the Saksh Escrow System from an unknown version up to 2.4. The issue arises due to improper neutralization of special elements used in SQL commands, allowing attackers to inject malicious SQL statements and potentially gain unauthorized access to sensitive information or even modify data. SQL injection attacks can lead to serious consequences, including data theft, system compromise, and unauthorized system access. Users of the Saksh Escrow System are urged to apply patches or updates as soon as possible to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.