PatchSiren

DRD Fleet Leasing CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

CRITICAL DRD Fleet Leasing CVE published 2023-11-22

CVE-2023-5047

CVE-2023-5047 is a critical SQL injection vulnerability in DRD Fleet Leasing DRDrive. The vulnerability affects DRDrive versions before 20231006 and is rated CVSS 9.8 with network access, no privileges, and no user interaction required. Because the impact is listed as high for confidentiality, integrity, and availability, exposed DRDrive deployments should be prioritized for immediate patching and validat [truncated]