CVE-2024-50584
MEDIUMScan2Net < 7.42 - Authenticated SQL Injection via Templates Parameter
Title source: llmDescription
An authenticated attacker with the user/role "Poweruser" can perform an SQL injection by accessing the /class/template_io.php file and supplying malicious GET parameters. The "templates" parameter is vulnerable against blind boolean-based SQL injection attacks. SQL syntax must be injected into the JSON syntax of the templates parameter.
References (3)
Core 3
Core References
Mailing List
http://seclists.org/fulldisclosure/2024/Dec/2
Various Sources third-party-advisory
https://r.sec-consult.com/imageaccess
Various Sources patch
https://www.imageaccess.de/?page=SupportPortal&lang=en
Scores
CVSS v3
4.4
EPSS
0.0028
EPSS Percentile
20.2%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
partial
Details
CWE
CWE-89
Status
published
Products (1)
Image Access GmbH/Scan2Net
< 7.42
Published
Dec 12, 2024
Tracked Since
Feb 18, 2026