Vulnerability CVE-2023-42405


Published: 2023-09-14   Modified: 2023-09-19

Description:
SQL injection vulnerability in FIT2CLOUD RackShift v1.7.1 allows attackers to execute arbitrary code via the `sort` parameter to taskService.list(), bareMetalService.list(), and switchService.list().

 References:
https://github.com/fit2cloud/rackshift/issues/79

Copyright 2026, cxsecurity.com

 

Back to Top