CVE-2024-0357 | coderd-repos Eva 1.0.0 HTTP POST Request /system/traceLog/page property sql injection (EUVD-2024-16153)
A vulnerability was found in coderd-repos Eva 1.0.0 and classified as critical. Affected by this issue is some unknown functionality of the file /system/traceLog/page of the component HTTP POST Request Handler. The manipulation of the argument property leads to sql injection.
This vulnerability is handled as CVE-2024-0357. The attack needs to be approached within the local network. Furthermore, there is an exploit available.