PatchSiren

Ween Software CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

CRITICAL Ween Software CVE published 2023-12-29

CVE-2023-4541

CVE-2023-4541 is a critical SQL injection affecting Ween Admin Panel / Management Panel through 20231229. NVD classifies the weakness as CWE-89 and assigns a CVSS 3.1 score of 9.8 with a vector of AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H, which means the issue is network-reachable, requires no privileges or user interaction, and can have full impact on confidentiality, integrity, and availability. The source a [truncated]