SQL Injection Vulnerability has been found on OpenGnsys product affecting version 1.1.1d (Espeto). This vulnerability allows an attacker to inject malicious SQL code into login page to bypass it or even retrieve all the information stored in the database.
Metrics
Affected Vendors & Products
References
History
Tue, 04 Nov 2025 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Opengnsys
Opengnsys opengnsys |
|
| CPEs | cpe:2.3:a:opengnsys:opengnsys:1.1.1d:*:*:*:*:*:*:* | |
| Vendors & Products |
Opengnsys
Opengnsys opengnsys |
Status: PUBLISHED
Assigner: INCIBE
Published:
Updated: 2024-08-01T20:20:01.267Z
Reserved: 2024-04-12T10:44:52.613Z
Link: CVE-2024-3704
Updated: 2024-08-01T20:20:01.267Z
Status : Analyzed
Published: 2024-04-12T14:15:08.743
Modified: 2025-11-04T18:33:49.640
Link: CVE-2024-3704
No data.