SQL injection in SpringBlade - CVE-2023-40787

 

SQL injection in SpringBlade - CVE-2023-40787

Published: December 18, 2023


Vulnerability identifier: #VU84531
CSH Severity: High
CVSS v4: 9.3 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2023-40787
CWE-ID: CWE-89
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to execute arbitrary SQL queries in database.

The vulnerability exists due to insufficient sanitization of user-supplied data. A remote attacker can send a specially crafted request to the affected application and execute arbitrary SQL commands within the application database.

Successful exploitation of this vulnerability may allow a remote attacker to read, delete, modify data in database and gain complete control over the affected application.


Affected software

SpringBlade
IBM Qradar SIEM
Juniper Secure Analytics (JSA)

How to mitigate CVE-2023-40787

Install update from vendor's website.

SpringBlade - update to 3.7.0
IBM Qradar SIEM - update to 7.5.0 Update Pack 7 IF03
Juniper Secure Analytics (JSA) - update to 7.5.0 UP7 IF03

External References

Related Security Bulletins