CVE-2024-11504

Severity CVSS v4.0:
HIGH
Type:
CWE-89 SQL Injection
Publication date:
28/03/2025
Last modified:
28/03/2025

Description

Input from multiple fields in Streamsoft Prestiż is not sanitized properly, leading to an SQL injection vulnerability, which might be exploited by an authenticated remote attacker. <br /> This issue was fixed in 18.1.376.37 version of the software.