CyberRota Analysis
This is a low severity vulnerability with a CVSS score of 3.8. It involves a SQL injection risk. Exploitation may require the attacker to be authenticated.
CVE
CVE-2023-42236
Severity
LOW
CVSS
3.8
EPSS
0.32%
Original NVD Description
An issue was discovered in Selesta Visual Access Manager (VAM) prior to 4.42.2. An authenticated attacker can perform SQL Injection in a GET parameter of /common/ajaxfunction.php.
Related CVEs
Other vulnerabilities affecting the same vendor(s)