SQL Injection Vulnerability in ScienceLogic SL1 Network Print Report Feature
CVE-2022-48601
8.8HIGH
What is CVE-2022-48601?
An SQL injection vulnerability is identified in the 'network print report' feature of ScienceLogic's SL1 product. This weakness arises from inadequate input sanitization of user-provided data, which is directly utilized in SQL queries leading to potential unauthorized manipulation of database information. Attackers may exploit this by injecting arbitrary SQL commands, posing a significant risk to data integrity and security.
Affected Version(s)
SL 1 11.1.2