Vulnerability CVE-2022-43437


Published: 2023-01-03

Description:
The Download function??s parameter of EasyTest has insufficient validation for user input. A remote attacker authenticated as a general user can inject arbitrary SQL command to access, modify or delete database.

 References:
https://www.twcert.org.tw/tw/cp-132-6829-11133-1.html

Copyright 2026, cxsecurity.com

 

Back to Top