CVE-2021-41932: SQL Injection
A blind SQL injection vulnerability in search form in TeamMate+ Audit version 28.0.19.0 allows any authenticated user to create malicious SQL injections, which can result in complete database compromise, gaining information about other users, unauthorized access to audit data etc.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-41932?
CVE-2021-41932 is a high-severity vulnerability due to its potential for complete database compromise.
How do I fix CVE-2021-41932?
To fix CVE-2021-41932, update TeamMate+ Audit to version 28.0.19.1 or later where the vulnerability is addressed.
Who is affected by CVE-2021-41932?
Any authenticated user of TeamMate+ Audit version 28.0.19.0 is affected by CVE-2021-41932.
What impact does CVE-2021-41932 have?
CVE-2021-41932 can lead to unauthorized access to audit data and compromise of user information.
Is CVE-2021-41932 a common vulnerability?
CVE-2021-41932 is considered critical due to its exploitability and the sensitivity of the data involved.