References https://www.vulncheck.com/advisories/sound-impactfirstpulseeco-x-sql-injection-via-username-parameter https://nvd.nist.gov/vuln/detail/CVE-2022-50694 https://github.com/advisories/GHSA-8f9w-h853-42j2 https://app.opencve.io/cve/?vendor=sound4 https://www.redpacketsecurity.com/cve-alert-cve-2022-50694-sound4-ltd-impact-pulse-first/ https://cve.imfht.com/detail/CVE-2023-53960 https://cve.imfht.com/vendor/SOUND4%20Ltd. https://cve.imfht.com/detail/CVE-2022-50694?lang=en https://cve.imfht.com/detail/CVE-2023-53960?lang=en https://s4e.io/tools/sound4-impact-first-pulse-eco-sql-injection
Related VulnerabilitiesSOUND4多款产品 路径遍历漏洞SOUND4多款产品 操作系统命令注入漏洞SOUND4多款产品 访问控制错误漏洞SOUND4多款产品 安全漏洞SOUND4多款产品 跨站脚本漏洞PoCsound4-directory-listing: SOUND4 Impact/Pulse/First/Eco <=2.x - Information DisclosurePoCsound4-file-disclosure: SOUND4 IMPACT/FIRST/PULSE/Eco <=2.x (PHPTail) Unauthenticated File DisclosurePoCsound4-impact-auth-bypass: SOUND4 IMPACT/FIRST/PULSE/Eco <= 2.x - Authentication BypassPoCsound4-password-auth-bypass: Sound4 IMPACT/FIRST/PULSE/Eco <=2.x - Authentication Bypass