CVE-2023-49934SQL Injection in Slurm

CWE-89SQL Injection5 documents5 sources
Severity
9.8CRITICALNVD
EPSS
0.4%
top 41.14%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 14

Description

An issue was discovered in SchedMD Slurm 23.11.x. There is SQL Injection against the SlurmDBD database. The fixed version is 23.11.1.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

Affected Packages1 packages

NVDschedmd/slurm23.11

🔴Vulnerability Details

3
CVEList
CVE-2023-49934: An issue was discovered in SchedMD Slurm 232023-12-14
GHSA
GHSA-8236-gwxc-gh9m: An issue was discovered in SchedMD Slurm 232023-12-14
OSV
CVE-2023-49934: An issue was discovered in SchedMD Slurm 232023-12-14

📋Vendor Advisories

1
Debian
CVE-2023-49934: slurm-wlm - An issue was discovered in SchedMD Slurm 23.11.x. There is SQL Injection against...2023
CVE-2023-49934 — SQL Injection in Schedmd Slurm | cvebase