CVE-2024-42533
Severity CVSS v4.0:
Pending analysis
Type:
CWE-89
SQL Injection
Publication date:
25/03/2025
Last modified:
27/03/2025
Description
SQL injection vulnerability in the authentication module in Convivance StandVoice 4.5 through 6.2 allows remote attackers to execute arbitrary code via the GEST_LOGIN parameter.
Impact
Base Score 3.x
9.80
Severity 3.x
CRITICAL