Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-58109 | A vulnerability was found in Netentsec NS-ASG Application Security Gateway 6.3 and classified as critical. Affected by this issue is some unknown functionality of the file /admin/list_onlineuser.php. The manipulation of the argument SessionId leads to sql injection. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-243716. NOTE: We tried to contact the vendor early about the disclosure but the official mail address was not working properly. |
No history.
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2024-08-02T08:14:24.123Z
Reserved: 2023-10-27T10:41:56.869Z
Link: CVE-2023-5826
Updated: 2024-08-02T08:14:24.123Z
Status : Modified
Published: 2023-10-27T18:15:22.030
Modified: 2026-06-17T06:49:27.087
Link: CVE-2023-5826
No data.
OpenCVE Enrichment
No data.
-
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
EUVD