Vulnerabilities > RED Gate > SQL Monitor > 12.1.31.893

DATE CVE VULNERABILITY TITLE RISK
2023-04-04 CVE-2022-47870 Cross-site Scripting vulnerability in Red-Gate SQL Monitor 12.1.31.893
A Cross Site Scripting (XSS) vulnerability in the web SQL monitor login page in Redgate SQL Monitor 12.1.31.893 allows remote attackers to inject arbitrary web Script or HTML via the returnUrl parameter.
network
low complexity
red-gate CWE-79
6.1
2023-03-30 CVE-2022-47542 Unspecified vulnerability in Red-Gate SQL Monitor
Red Gate SQL Monitor 11.0.14 through 12.1.46 has Incorrect Access Control, exploitable remotely for Escalation of Privileges.
network
low complexity
red-gate
8.8