CVE-2024-7104

Sept. 16, 2024, 3:30 p.m.

Awaiting Analysis
CVE has been marked for Analysis. Normally once in this state the CVE will be analyzed by NVD staff within 24 hours.

Products

ww.Winsure

  • before 4.6.2

Source

iletisim@usom.gov.tr

Tags

CVE-2024-7104 details

Published : Sept. 16, 2024, 3:15 p.m.
Last Modified : Sept. 16, 2024, 3:30 p.m.

Description

Improper Control of Generation of Code ('Code Injection') vulnerability in SFS Consulting ww.Winsure allows Code Injection.This issue affects ww.Winsure: before 4.6.2.

CVSS Score

1 2 3 4 5 6 7 8 9 10

Weakness

Weakness Name Description
CWE-94 Improper Control of Generation of Code ('Code Injection') The product constructs all or part of a code segment using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the syntax or behavior of the intended code segment.

References

URL Source
https://www.usom.gov.tr/bildirim/tr-24-1475 iletisim@usom.gov.tr
This website uses the NVD API, but is not approved or certified by it.