CVE-2022-2504

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in SDD Computer Software SDD-Baro allows SQL Injection. This issue affects SDD-Baro: before 2.8.432.

critical 9.8 CVSS 3.1
Published: Feb 23, 2023
Modified: May 20, 2026
Vendor: Sdd-Baro Project
Product: Sdd-Baro

Description

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in SDD Computer Software SDD-Baro allows SQL Injection.

This issue affects SDD-Baro: before 2.8.432.

References