PatchSiren

BMA CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

CRITICAL BMA CVE published 2023-09-05

CVE-2023-35068

CVE-2023-35068 is a critical SQL injection vulnerability in BMA Personnel Tracking System, published on 2023-09-05. According to the supplied NVD metadata, versions before 20230904 are affected. The vulnerability is rated 9.8/CRITICAL and is characterized as network exploitable with no authentication or user interaction required, creating high risk for confidentiality, integrity, and availability.