Security Advisory

CVE-2024-11504

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2025-03-28 12:54:11
Last updated 2025-03-28 13:41:20
Assigner CERT-PL
CVSS score 8.6
State PUBLISHED

Description

Input from multiple fields in Streamsoft Prestiż is not sanitized properly, leading to an SQL injection vulnerability, which might be exploited by an authenticated remote attacker.  This issue was fixed in 18.1.376.37 version of the software.