Unauthenticated user is able to execute arbitrary SQL commands in Sparx Pro Cloud Server database in certain cases.
The SQL injection vulnerability (CWE-89) allows an attacker to inject malicious SQL instructions into queries directed at the application database. Lack of proper validation or parameterization of input data enables execution of arbitrary SQL commands without the need for authentication. Additionally, the CWE-200 vulnerability indicates the possibility of unauthorized disclosure of sensitive information stored in the database.
An attacker can read, modify, or delete data from the application database, and under favorable conditions gain broader access to the system. It is also possible to disclose sensitive information stored in the Sparx Pro Cloud Server database.
Apply patches available from the manufacturer according to the references — a detailed list of patched versions is available in the Sparx Pro Cloud Server change history at: https://sparxsystems.com/products/procloudserver/6.1/history.html
Sparx Pro Cloud Server — versions indicated in the manufacturer's references (change history available at sparxsystems.com/products/procloudserver/6.1/history.html)
CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:P/AU:Y/R:I/V:C/RE:M/U:RedSparxsystems Pro Cloud Server
APPSparxsystems6.0.163
Related vulnerabilities
Sparx Pro Cloud Server — SQL injection bez uwierzytelnienia przez pominięcie parametru
Sparx Pro Cloud Server: ujawnienie hasła do bazy danych w plaintext
Plaintext Storage haseł w Sparx Pro Cloud Server z OpenID
Sparx Pro Cloud Server is vulnerable to Broken Access Control within communication with the database. Due to l...
Sparx Pro Cloud Server is vulnerable to a Race Condition in the /data_api/dl_internal_artifact.php endpoint. T...