SQL Injection Vulnerability in Cloudlog by Magicbug
CVE-2024-48253
9.8CRITICAL
What is CVE-2024-48253?
The Cloudlog 2.6.15 application is susceptible to an SQL injection vulnerability in the Oqrs.php component, specifically within the delete_oqrs_line function. This flaw allows an attacker to manipulate SQL queries executed by the application. As a result, an unauthorized individual may gain the ability to delete critical records from the database, potentially leading to data loss and integrity concerns. Proper validation and sanitization of user inputs are essential to mitigate this risk.
