CVEs (2)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Connectwise 1Connectwise Automate Nov 21, 2024 Jun 17, 2021 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 An issue was discovered in ConnectWise Automate before 2021.5. A blind SQL injection vulnerability exists in core agent inventory communication that can enable an attacker to extract database information or administrativ...Show more |
1Connectwise 1Connectwise Automate Nov 21, 2024 Jul 7, 2020 N/A· v4 7.5 HIGH· v3 6.0 MEDIUM· v2 A SQLi exists in the probe code of all Connectwise Automate versions before 2020.7 or 2019.12. A SQL Injection in the probe implementation to save data to a custom table exists due to inadequate server side validation. A...Show more |