ControlID iDSecure On-premises
cpe:2.3:a:controlid:idsecure:*:*:*:*:*:*:*
- <= 4.7.48.0
A SQL injection vulnerability has been identified in ControlID iDSecure On-premises versions 4.7.48.0 and prior. This vulnerability allows attackers to leak arbitrary information and insert custom SQL syntax into SQL queries.
Exploitation of this vulnerability could lead to unauthorized data access and manipulation of the application's database.
ControlID has released version 4.7.50.0 to address this vulnerability. Users are advised to update to this version.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.