Security Advisory

CVE-2021-38706

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2021-09-07 19:13:15
Last updated 2024-08-04 01:51:19
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

messages_load.php in ClinicCases 7.3.3 suffers from a blind SQL injection vulnerability, which allows low-privileged attackers to execute arbitrary SQL commands through a vulnerable parameter.