CVE-2021-3958

Improper Handling of Parameters vulnerability in Ipack Automation Systems Ipack SCADA Software allows : Blind SQL Injection.This issue affects Ipack SCADA Software: from unspecified before 1.1.0.
Configurations

Configuration 1 (hide)

cpe:2.3:a:ipack:scada_automation:*:*:*:*:*:*:*:*

History

21 Nov 2024, 06:23

Type Values Removed Values Added
References () https://github.com/paradessia/cve/blob/main/Ipack-Scada-Automation.txt - Exploit, Third Party Advisory () https://github.com/paradessia/cve/blob/main/Ipack-Scada-Automation.txt - Exploit, Third Party Advisory

17 Sep 2024, 03:15

Type Values Removed Values Added
Summary (en) Improper Handling of Parameters vulnerability in Ipack Automation Systems Ipack SCADA Software allows : Blind SQL Injection.This issue affects Ipack SCADA Software: from unspecified before 1.1.0. (en) Improper Handling of Parameters vulnerability in Ipack Automation Systems Ipack SCADA Software allows : Blind SQL Injection.This issue affects Ipack SCADA Software: from unspecified before 1.1.0.

26 Jan 2024, 18:57

Type Values Removed Values Added
Summary Improper Handling of Parameters vulnerability in Ipack Automation Systems Ipack SCADA Software allows : Blind SQL Injection.This issue affects Ipack SCADA Software: from unspecified before 1.1.0. Improper Handling of Parameters vulnerability in Ipack Automation Systems Ipack SCADA Software allows : Blind SQL Injection.This issue affects Ipack SCADA Software: from unspecified before 1.1.0.

26 Mar 2023, 20:15

Type Values Removed Values Added
Summary Due to improper sanitization iPack SCADA Automation software suffers from a remote SQL injection vulnerability. An unauthenticated attacker with the web access is able to extract critical information from the system. Improper Handling of Parameters vulnerability in Ipack Automation Systems Ipack SCADA Software allows : Blind SQL Injection.This issue affects Ipack SCADA Software: from unspecified before 1.1.0.

17 Nov 2021, 20:16

Type Values Removed Values Added
CPE cpe:2.3:a:ipack:scada_automation:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : 7.5
v3 : 9.8
CWE CWE-89
References (MISC) https://github.com/paradessia/cve/blob/main/Ipack-Scada-Automation.txt - (MISC) https://github.com/paradessia/cve/blob/main/Ipack-Scada-Automation.txt - Exploit, Third Party Advisory

16 Nov 2021, 17:19

Type Values Removed Values Added
New CVE

Information

Published : 2021-11-16 16:15

Updated : 2024-11-21 06:23


NVD link : CVE-2021-3958

Mitre link : CVE-2021-3958

CVE.ORG link : CVE-2021-3958


JSON object : View

Products Affected

ipack

  • scada_automation
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')