CVE-2023-2080: SQL Injection
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Forcepoint Cloud Security Gateway (CSG) Portal on Web Cloud Security Gateway, Email Security Cloud allows Blind SQL Injection.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2023-2080.
What is the title of the vulnerability?
The title of the vulnerability is 'Improper Neutralization of Special Elements used in an SQL Command ( SQL Injection ).'
What is the severity of CVE-2023-2080?
CVE-2023-2080 has a severity of critical.
Which software is affected by CVE-2023-2080?
Forcepoint Cloud Security Gateway (CSG) Portal on Web Cloud Security Gateway, Email Security Cloud is affected by CVE-2023-2080.
How can the SQL Injection vulnerability in Forcepoint Cloud Security Gateway be exploited?
The SQL Injection vulnerability in Forcepoint Cloud Security Gateway can be exploited through improper neutralization of special elements used in an SQL command.
Is there a fix available for CVE-2023-2080?
Please refer to the following link for information on available fixes: [https://support.forcepoint.com/s/article/000041871](https://support.forcepoint.com/s/article/000041871)
What is the CWE ID for CVE-2023-2080?
The CWE ID for CVE-2023-2080 is 89.