CVE-2024-57238
HIGHProlink 4G LTE Mobile Wi-Fi DL-7203E V4.0.0B05 - SQL Injection
Title source: llmDescription
Prolink 4G LTE Mobile Wi-Fi DL-7203E V4.0.0B05 is vulnerable to SQL Injection in in the /reqproc/proc_get endpoint. The vulnerability allows an attacker to manipulate SQL queries by injecting malicious SQL code into the order_by parameter.
References (2)
Core 2
Core References
Various Sources
https://prolink2u.com/products/dl-7203e-b
Scores
CVSS v3
7.3
EPSS
0.0031
EPSS Percentile
22.7%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
CISA SSVC
Vulnrichment
Exploitation
poc
Automatable
no
Technical Impact
total
Details
CWE
CWE-89
Status
published
Published
Feb 03, 2025
Tracked Since
Feb 18, 2026