CVE

CVE-2024-6632

Severity:
HIGH
Type:
CWE-89 SQL Injection
Publication date:
27/08/2024
Last modified:
30/08/2024

Description

A vulnerability exists in FileCatalyst Workflow whereby a field accessible to the super admin can be used to perform an SQL injection attack which can lead to a loss of confidentiality, integrity, and availability.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:fortra:filecatalyst_workflow:*:*:*:*:*:*:*:* 5.0.4 (including) 5.1.7 (excluding)