PatchSiren

CF Software CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

CRITICAL CF Software CVE published 2023-09-15

CVE-2023-4835

CVE-2023-4835 is a critical SQL injection vulnerability (CWE-89) reported in Oil Management Software / Petroleum Management Software Application Project versions before 20230912. NVD assigns a CVSS 3.1 score of 9.8 with network attack conditions and high impact to confidentiality, integrity, and availability. The public records point to a straightforward, high-severity input handling flaw that can be reac [truncated]