Description
A vulnerability was found in ESAFENET CDG V5. It has been rated as critical. Affected by this issue is the function delCatelogs of the file /CDGServer3/document/Catelogs;logindojojs?command=DelCatelogs. The manipulation of the argument id leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
References
VDB-279368 | ESAFENET CDG Catelogs;logindojojs delCatelogs sql injection
VDB-279368 | CTI Indicators (IOB, IOC, TTP, IOA)
ESAFENET ESAFENET CDG V5 SQL Injection
https://flowus.cn/share/38f64855-27ec-4170-ac78-f29ca595901e?code=G8A6P3