Security Advisory

CVE-2022-4259

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2023-05-04 10:38:25
Last updated 2024-08-03 01:34:49
Assigner Nozomi
CVSS score 8.8
State PUBLISHED

Description

Due to improper input validation in the Alerts controller, a SQL injection vulnerability in Nozomi Networks Guardian and CMC allows an authenticated attacker to execute arbitrary SQL queries on the DBMS used by the web application.