SQL Injection Vulnerability in Genesys Intelligent Workload Distribution
CVE-2021-40861
7.2HIGH
What is CVE-2021-40861?
A SQL Injection vulnerability exists in the custom filter query component of Genesys Intelligent Workload Distribution version 9.0.017.07, which allows attackers to execute arbitrary SQL queries via the value attribute. This exploitation can lead to unauthorized access to sensitive data within the database. Depending on the user's permissions and the database engine's configuration, there is a potential for OS command execution, significantly impacting system integrity and confidentiality.
