AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2024-3704

CRITICAL · CVSS 9.8 EPSS 0.73%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2024-04-12 · Last synced 2026-08-04

CyberRota Analysis

This is a critical severity vulnerability with a CVSS score of 9.8. It involves a SQL injection risk.

CVE
CVE-2024-3704
Severity
CRITICAL
CVSS
9.8
EPSS
0.73%

Original NVD Description

SQL Injection Vulnerability has been found on OpenGnsys product affecting version 1.1.1d (Espeto). This vulnerability allows an attacker to inject malicious SQL code into login page to bypass it or even retrieve all the information stored in the database.

Related CVEs

Other vulnerabilities affecting the same vendor(s)