Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Bentley Systems ProjectWise Integration Server before 10.00.03.288 allows unintended SQL query execution by an authenticated user via an API call.
CVSS Information
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:L/A:N
Vulnerability Type
特权API的不正确使用
Vulnerability Title
Bentley Systems ProjectWise Integration Server 安全漏洞
Vulnerability Description
Bentley Systems ProjectWise Integration Server是美国Bentley Systems公司的一款应用程序。 Bentley Systems ProjectWise Integration Server 10.00.03.288之前版本存在安全漏洞。攻击者利用该漏洞可以通过 API 调用执行意外的 SQL 查询。
CVSS Information
N/A
Vulnerability Type
N/A