CVE-2023-23563

MEDIUM

Geomatika IsiGeo Web 6.0 - Authenticated SQL Injection

Title source: llm
STIX 2.1

Description

An issue was discovered in Geomatika IsiGeo Web 6.0. It allows remote authenticated users to obtain sensitive database content via SQL Injection.

Scores

CVSS v3 6.5
EPSS 0.0091
EPSS Percentile 55.3%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation poc
Automatable no
Technical Impact partial

Details

CWE
CWE-89
Status published
Products (1)
geomatika/isigeo_web 6.0
Published Aug 22, 2023
Tracked Since Feb 18, 2026