CVE-2023-31717: SQL Injection
Published Sep 21, 2023
·Updated
A SQL Injection attack in FUXA <= 1.1.12 allows exfiltration of confidential information from the database.
Affected Software
2 affected components
npm/fuxa-server<=1.1.12
frangoteam FUXA<=1.1.12
Event History
Sep 21, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Sep 22, 2023
Advisory Published
12:30 AM
Frequently Asked Questions
1
What is CVE-2023-31717?
CVE-2023-31717 is a SQL Injection vulnerability in FUXA <= 1.1.12 which allows the exfiltration of confidential information from the database.
2
How severe is CVE-2023-31717?
CVE-2023-31717 is considered to be a serious vulnerability.
3
How can the CVE-2023-31717 vulnerability be exploited?
The CVE-2023-31717 vulnerability can be exploited through SQL Injection attacks.
4
How can I fix CVE-2023-31717?
To fix CVE-2023-31717, it is recommended to update FUXA to version 1.1.13 or higher.
5
Where can I find more information about CVE-2023-31717?
You can find more information about CVE-2023-31717 on the NIST National Vulnerability Database (NVD) and the GitHub repositories listed in the references.