CVE-2023-44294

In Dell Secure Connect Gateway Application and Secure Connect Gateway Appliance (between v5.10.00.00 and v5.18.00.00), a security concern has been identified, where a malicious user with a valid User session may inject malicious content in filters of Collection Rest API. This issue may potentially lead to unintentional information disclosure from the product database.
Configurations

No configuration.

History

14 Feb 2024, 13:59

Type Values Removed Values Added
New CVE

Information

Published : 2024-02-14 09:15

Updated : 2024-02-14 13:59


NVD link : CVE-2023-44294

Mitre link : CVE-2023-44294

CVE.ORG link : CVE-2023-44294


JSON object : View

Products Affected

No product.

CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')