CVE-2023-43986
DM Concept configurator before v4.9.4 was discovered to contain a SQL injection vulnerability via the component Configur
DM Concept configurator before v4.9.4 was discovered to contain a SQL injection vulnerability via the component ConfiguratorAttachment::getAttachmentByToken.
CRITICAL · CVSS 9.8
EPSS 0.00138
Schedule remediation
- SSVC automatable: yes - attacks can be scripted at scale
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0