CVE-2023-22268

Adobe RoboHelp Server versions 11.4 and earlier are affected by an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability that could lead to information disclosure by an low-privileged authenticated attacker. Exploitation of this issue does not require user interaction.
CVSS

No CVSS.

References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:adobe:robohelp_server:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

22 Nov 2023, 17:45

Type Values Removed Values Added
First Time Microsoft windows
Adobe robohelp Server
Adobe
Microsoft
CPE cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
cpe:2.3:a:adobe:robohelp_server:*:*:*:*:*:*:*:*
References () https://helpx.adobe.com/security/products/robohelp-server/apsb23-53.html - () https://helpx.adobe.com/security/products/robohelp-server/apsb23-53.html - Release Notes, Vendor Advisory

17 Nov 2023, 13:58

Type Values Removed Values Added
New CVE

Information

Published : 2023-11-17 13:15

Updated : 2023-11-22 17:45


NVD link : CVE-2023-22268

Mitre link : CVE-2023-22268


JSON object : View

Products Affected

adobe

  • robohelp_server

microsoft

  • windows
CWE

No CWE.