CVE-2023-25223 | CRMEB Java up to 1.3.4 /api/admin/user/list sql injection (EUVD-2023-29186)
A vulnerability was found in CRMEB Java up to 1.3.4 and classified as critical. This affects an unknown part of the file /api/admin/user/list. The manipulation results in sql injection.
This vulnerability is identified as CVE-2023-25223. The attack can be executed remotely. Additionally, an exploit exists.