CVE-2022-38118: HGiga OAKlouds - SQL Injection
OAKlouds Portal website’s Meeting Room has insufficient validation for user input. A remote attacker with general user privilege can perform SQL-injection to access, modify, delete database, perform system operations and disrupt service.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2022-38118?
The severity of CVE-2022-38118 is high due to the potential for remote code execution and significant data manipulation.
How do I fix CVE-2022-38118?
To fix CVE-2022-38118, you should update the OAKlouds Portal to the latest version that addresses this vulnerability.
What impact can CVE-2022-38118 have on my system?
CVE-2022-38118 can allow attackers to perform SQL injection, potentially accessing, modifying, or deleting your database and disrupting service.
Who is affected by CVE-2022-38118?
Users of OAKlouds Portal versions 2.0 to 2.0-163 and 3.0 to 3.0-163 are affected by CVE-2022-38118.
What type of vulnerability is CVE-2022-38118?
CVE-2022-38118 is a SQL injection vulnerability that occurs due to insufficient validation of user input.