1 results (0.003 seconds)

CVSS: 7.5EPSS: 0%CPEs: 2EXPL: 1

03 Feb 2022 — SQL Injection vulnerability discovered in Unified Office Total Connect Now that would allow an attacker to extract sensitive information through a cookie parameter. Se ha detectado una vulnerabilidad de inyección SQL en Unified Office Total Connect Now que permitiría a un atacante extraer información confidencial mediante de un parámetro de cookie • https://unifiedoffice.com/total-connect-now • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •