- Description
- A vulnerability has been identified in syngo.plaza VB30E (All versions < VB30E_HF05). The affected application do not properly sanitize input data before sending it to the SQL server. This could allow an attacker with access to the application could use this vulnerability to execute malicious SQL commands to compromise the whole database.
- Source
- productcert@siemens.com
- NVD status
- Received
CVSS 4.0
- Type
- Secondary
- Base score
- 9.3
- Impact score
- -
- Exploitability score
- -
- Vector string
- CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
- Severity
- CRITICAL
CVSS 3.1
- Type
- Secondary
- Base score
- 9.8
- Impact score
- 5.9
- Exploitability score
- 3.9
- Vector string
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- Severity
- CRITICAL
- productcert@siemens.com
- CWE-89
- Hype score
- Not currently trending
🚨 Critical Security Alert: Siemens Healthineers @SiemensHealth Addresses SQL Injection Vulnerability 🛡️ #CVE-2024-52335 (#CVSS 9.8): Siemens Healthineers Addresses #Critical Flaw in Medical Imaging Software 📢 Siemens Healthineers has released a hotfix to patch a critical
@GHak2learn27752
11 Dec 2024
128 Impressions
2 Retweets
3 Likes
0 Bookmarks
0 Replies
0 Quotes
CVE-2024-52335 (CVSS 9.8): Siemens Healthineers Addresses Critical Flaw in Medical Imaging Software Siemens Healthineers' critical security update for syngo.plaza VB30E addresses the SQL injection vulnerability https://t.co/W3QemQafeW
@the_yellow_fall
11 Dec 2024
16 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
We have just added an important vulnerability affecting Siemens syngo.plaza VB30E (CVE-2024-52335) https://t.co/Ak3AvbrXpH
@vuldb
7 Dec 2024
76 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes