CVE-2024-0857
CVE-2024-0857 is a SQL Injection vulnerability affecting Universal Software Inc.'s FlexWater Corporate Water Management software. This vulnerability allows attackers to inject malicious SQL code, potentially leading to unauthorized access to sensitive database information or system compromise. Versions prior to 5.452.0 are affected. Although the CVSS score is 0, indicating a low base severity, SOCRadar's Vulnerability Risk Score (SVRS) is 30 and it has been tagged as 'In The Wild' which means that while not critical, the vulnerability is actively being exploited, increasing the risk significantly. An SQL injection vulnerability could allow an attacker to read, modify, or delete data in the database. Organizations using FlexWater Corporate Water Management should update to version 5.452.0 or later immediately and implement security best practices to mitigate potential risks.
Indicators of Compromise
Exploits
News
Social Media
Affected Software
References
CWE Details
CVE Radar
Real-time CVE Intelligence & Vulnerability Management Platform
CVE Radar provides comprehensive vulnerability intelligence by monitoring CVE databases, security advisories, and threat feeds. Get instant updates on new vulnerabilities, exploit details, and mitigation strategies specific to your assets.