CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 7.2. Its EPSS score suggests a 41.4% probability of exploitation in the next 30 days. It involves a SQL injection risk.
CVE
CVE-2023-29154
Severity
HIGH
CVSS
7.2
EPSS
41.44%
Original NVD Description
SQL injection vulnerability exists in the CONPROSYS HMI System (CHS) versions prior to 3.5.3. A user who can access the affected product with an administrative privilege may execute an arbitrary SQL command via specially crafted input to the query setting page.
Related CVEs
Other vulnerabilities affecting the same vendor(s)