The vendor explicitly identifies these products as affected by this CVE.
- Nozomi Networks Guardian <22.6.3
- Nozomi Networks Guardian >=23.0.0|<23.1.0
- Nozomi Networks CMC <22.6.3
- Nozomi Networks CMC >=23.0.0|<23.1.0
- Summary
- A SQL Injection vulnerability has been found in Nozomi Networks Guardian and CMC, due to improper input validation in certain parameters used in the Query functionality.
- Remediation
- Upgrade to v22.6.3, v23.1.0 or later.
