Audimexee v14.1.7 was discovered to contain a SQL injection vulnerability via the p_table_name parameter.
References
| Link | Resource |
|---|---|
| http://audimex.com | Product |
| http://audimexee.com | Broken Link |
| https://gist.github.com/Cameleon037/40b3b6f6729d1d0984d6ce5b6837c46b | Third Party Advisory |
| https://github.com/Henkel-CyberVM/CVEs/tree/main/CVE-2023-36361 | |
| http://audimex.com | Product |
| http://audimexee.com | Broken Link |
| https://gist.github.com/Cameleon037/40b3b6f6729d1d0984d6ce5b6837c46b | Third Party Advisory |
| https://github.com/Henkel-CyberVM/CVEs/tree/main/CVE-2023-36361 |
Configurations
History
04 Apr 2025, 19:15
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://github.com/Henkel-CyberVM/CVEs/tree/main/CVE-2023-36361 - |
09 Jan 2025, 20:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
21 Nov 2024, 08:09
| Type | Values Removed | Values Added |
|---|---|---|
| References | () http://audimex.com - Product | |
| References | () http://audimexee.com - Broken Link | |
| References | () https://gist.github.com/Cameleon037/40b3b6f6729d1d0984d6ce5b6837c46b - Third Party Advisory |
08 Sep 2023, 16:47
| Type | Values Removed | Values Added |
|---|---|---|
| References | (MISC) http://audimexee.com - Broken Link | |
| References | (MISC) https://gist.github.com/Cameleon037/40b3b6f6729d1d0984d6ce5b6837c46b - Third Party Advisory | |
| References | (MISC) http://audimex.com - Product | |
| First Time |
Web-audimex audimexee
Web-audimex |
|
| CWE | CWE-89 | |
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.8 |
| CPE | cpe:2.3:a:web-audimex:audimexee:14.1.7:*:*:*:*:*:*:* |
05 Sep 2023, 17:31
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2023-09-05 16:15
Updated : 2025-04-04 19:15
NVD link : CVE-2023-36361
Mitre link : CVE-2023-36361
CVE.ORG link : CVE-2023-36361
JSON object : View
Products Affected
web-audimex
- audimexee
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
