← Back to browse · API

CVE-2024-55971

Severity
CRITICAL
CVSS
10.0
EPSS
0.00644
Risk score
40.23
CISA KEV
No
PoC
No
Published
2025-01-23
Modified
2025-02-06
First seen
2026-08-07
Aliases
EUVD-2024-52871, GHSA-2848-R5H7-H9RJ
Products
n/a:n/a n/a
Sources
euvd EUVD-2024-52871

Description

SQL Injection vulnerability in the default configuration of the Logitime WebClock application <= 5.43.0 allows an unauthenticated user to run arbitrary code on the backend database server.

References