Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
HPE Telco Service Orchestrator Software, Authenticated SQL Injection
Vulnerability Description
A security vulnerability has been identified in HPE Telco Service Orchestrator software. The vulnerability could allow authenticated clients to to perform a SQL Injection attack when sending a service request, and potentially exfiltrate the database's vendor name to unauthorized authenticated clients.
CVSS Information
CVSS:3.1/AV:A/AC:H/PR:L/UI:N/S:C/C:L/I:H/A:L
Vulnerability Type
N/A
Vulnerability Title
HPE Telco Service Orchestrator 安全漏洞
Vulnerability Description
HPE Telco Service Orchestrator是美国HPE公司的一款电信服务编排器。 HPE Telco Service Orchestrator存在安全漏洞,该漏洞源于SQL注入,可能导致数据库信息泄露。
CVSS Information
N/A
Vulnerability Type
N/A