CVE-2024-56284
CVSS 3.1 Score 9.3 of 10 (high)
Details
Published Jan 7, 2025
CWE ID 89
Summary
CVE-2024-56284 is an SQL Injection vulnerability affecting SSL Wireless SMS Notification, where special elements in SQL commands are not properly neutralized. This issue, which occurs between versions n/a and 3.5.0, allows unauthorized SQL injection, potentially granting attackers access to sensitive data or the ability to execute malicious code. This vulnerability poses a significant risk to organizations using SSL Wireless SMS Notification and highlights the importance of implementing proper input validation and sanitization techniques.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.