DevSecOps Toolkit

CVE record

CVE-2023-4835

CRITICALCVSS 9.8

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in CF Software Oil Management Software allows SQL Injection. This issue affects Oil Management Software: before 20230912 .

Vulnerability metadata

Published
2023-09-15T03:45:08.607Z
Modified
2026-05-21T03:46:25.533Z
EPSS
Not available
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

References