SQL Injection Vulnerability in Fujian Kelixin Communication Dispatch Platform
CVE-2024-2622
Key Information:
- Vendor
Fujian Kelixin Communication
- Vendor
- CVE Published:
- 19 March 2024
Badges
What is CVE-2024-2622?
A significant SQL injection vulnerability has been identified in the Fujian Kelixin Communication Command and Dispatch Platform, specifically in the file /api/client/editemedia.php. This vulnerability arises from improper validation of user-supplied data in the parameters number and enterprise_uuid, allowing an attacker to execute arbitrary SQL queries against the database. The vulnerability facilitates remote attacks, enabling malicious actors to exploit this weakness from a distance. Given that the exploit has been publicly disclosed, organizations utilizing the affected versions are urged to assess their risk and implement necessary mitigations to safeguard sensitive data and maintain the integrity of their systems.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Command and Dispatch Platform 20240318
References
CVSS V3.1
Timeline
- ๐พ
Exploit known to exist
Vulnerability published
Vulnerability Reserved
