PatchSiren

Glox CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

CRITICAL Glox CVE published 2023-03-02

CVE-2021-3854

A critical SQL injection vulnerability in Glox Technology Useroam Hotspot allows unauthenticated remote attackers to execute arbitrary SQL commands, potentially leading to complete database compromise. The vulnerability affects all versions prior to 5.1.0.15. The issue was disclosed in March 2023 with a CVSS 3.1 score of 9.8 (Critical), indicating network exploitable, low complexity, no privileges require [truncated]