CVE-2024-11504
Severity CVSS v4.0:
HIGH
Type:
CWE-89
SQL Injection
Publication date:
28/03/2025
Last modified:
28/03/2025
Description
Input from multiple fields in Streamsoft Prestiż is not sanitized properly, leading to an SQL injection vulnerability, which might be exploited by an authenticated remote attacker. <br />
This issue was fixed in 18.1.376.37 version of the software.
Impact
Base Score 4.0
8.60
Severity 4.0
HIGH



