CVE-2023-2756 | pimcore customer-data-framework up to 3.3.9 sql injection (EUVD-2023-1441)
A vulnerability, which was classified as critical, was found in pimcore customer-data-framework up to 3.3.9. Affected is an unknown function. The manipulation leads to sql injection.
This vulnerability is traded as CVE-2023-2756. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.