PT-2023-10353 · Dynacase · Dynacase Webdesk

CVE-2016-15034

·

Published

2023-07-10

·

Updated

2024-05-17

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Dynacase Webdesk versions prior to 3.2-20180305
Description A critical issue was found in Dynacase Webdesk, affecting the freedomrss search function of the freedomrss search.php file. This issue leads to sql injection.
Recommendations Upgrade to version 3.2-20180305 to address this issue. As a temporary workaround, consider disabling the freedomrss search function until the patch is applied.

Fix

SQL injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2016-15034

Affected Products

Dynacase Webdesk