Progress Chef Automate
cpe:2.3:a:chef:automate:*:*:*:*:*:*:*
- < 4.13.295
A vulnerability exists in Progress Chef Automate compliance service on Linux x86 platforms, in versions prior to 4.13.295. It allows authenticated attackers to access restricted functionality by exploiting improperly sanitized inputs in an SQL command, using a well-known token.
Exploitation of this vulnerability could lead to unauthorized access to restricted functionality within the Chef Automate compliance service.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.