Vulnerabilities > Knovos

DATE CVE VULNERABILITY TITLE RISK
2024-01-16 CVE-2023-47459 Unspecified vulnerability in Knovos Discovery 22.67.0
An issue in Knovos Discovery v.22.67.0 allows a remote attacker to obtain sensitive information via the /DiscoveryReview/Service/CaseManagement.svc/GetProductSiteName component.
network
low complexity
knovos
6.5
2024-01-16 CVE-2023-47460 SQL Injection vulnerability in Knovos Discovery 22.67.0
SQL injection vulnerability in Knovos Discovery v.22.67.0 allows a remote attacker to execute arbitrary code via the /DiscoveryProcess/Service/Admin.svc/getGridColumnStructure component.
network
low complexity
knovos CWE-89
8.8