CVE-2023-42405 | FIT2CLOUD RackShift 1.7.1 sort sql injection (Issue 79 / EUVD-2023-46857)
A vulnerability categorized as critical has been discovered in FIT2CLOUD RackShift 1.7.1. This affects the function taskService.list/bareMetalService.list/switchService.list. Executing a manipulation of the argument sort can lead to sql injection.
This vulnerability appears as CVE-2023-42405. The attacker needs to be present on the local network. There is no available exploit.