CVE-2024-13955: SQL Injection 2nd Order
2nd Order SQL injection vulnerabilities in ASPECT allow unintended access and manipulation of database repositories if administrator credentials become compromised.This issue affects ASPECT-Enterprise: through 3.; NEXUS Series: through 3.; MATRIX Series: through 3..
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-13955?
CVE-2024-13955 is classified as a high severity vulnerability due to its potential to allow unintended access and manipulation of databases.
How do I fix CVE-2024-13955?
To fix CVE-2024-13955, ensure that all affected ASPECT, NEXUS, and MATRIX Series software are updated to the latest version that addresses this vulnerability.
What systems are impacted by CVE-2024-13955?
CVE-2024-13955 affects ASPECT-Enterprise, NEXUS Series, and MATRIX Series software versions up to 3.*.
What type of vulnerability is CVE-2024-13955?
CVE-2024-13955 is a 2nd Order SQL injection vulnerability, which can lead to compromised database security.
Who is at risk from CVE-2024-13955?
Organizations using the affected versions of ASPECT, NEXUS, and MATRIX Series software are at risk if administrator credentials are compromised.