We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2023-42284



Assignermitre
Reserved2023-09-08
Published2023-11-07
Updated2024-09-05

Description

Blind SQL injection in api_version parameter in Tyk Gateway version 5.0.3 allows attacker to access and dump the database via a crafted SQL query.

References

https://github.com/andreysanyuk/CVE-2023-42284

cve.org CVE-2023-42284

nvd.nist.gov CVE-2023-42284

Download JSON

Share this page
https://cve.threatint.com/CVE/CVE-2023-42284
Subscribe to our newsletter to learn more about our work.