Critical Azure SQL Database Flaw Found
A critical authentication bypass in Azure SQL Database allows unauthorized attackers to gain elevated privileges over a network.
15 results for “sql”
A critical authentication bypass in Azure SQL Database allows unauthorized attackers to gain elevated privileges over a network.
Researchers identified a post-exploitation toolkit concealed within Oracle database schema objects to bypass endpoint security tools.
A critical SQL injection vulnerability in Loca Software CMS allows unauthorized attackers to gain full control over affected database systems.
A critical SQL injection vulnerability in Adobe Campaign Classic allows low-privileged attackers to execute arbitrary code without user interaction.
A severe vulnerability in PyAthena versions prior to 3.35.4 allows unauthenticated attackers to execute arbitrary SQL commands.
A critical vulnerability in SiYuan software allows unauthorized database manipulation via the searchDocs API endpoint.
A severe SQL injection flaw in NocoBase allows unauthenticated attackers to gain remote code execution via a simple registration and API request.
A severe SQL injection vulnerability in @hypequery/clickhouse allows attackers to execute arbitrary SQL commands by manipulating input parameters.
A critical vulnerability in the PROCON-WEB SCADA GetGridData endpoint allows unauthenticated attackers to execute arbitrary SQL commands.
A configuration vulnerability in the platform's MySQL integration allows for unauthorized command execution and database takeover.
WordPress Core is under active attack via an interpretation conflict vulnerability that allows for SQL injection and remote code execution.
WordPress Core is currently under active exploitation via a SQL injection vulnerability that can be chained to achieve remote code execution.
A critical, unauthenticated SQL injection vulnerability has been identified in Sangoma Switchvox SMB Edition 8.3.
A dual-vulnerability chain allows unauthenticated code execution on WordPress core installations, prompting emergency updates.
Researchers are moving beyond theoretical AI capabilities, building automated pipelines to find live vulnerabilities in software.