CVE-2022-34876 | VICIdial up to 2.14b0.5 /vicidial/admin.php sql injection
A vulnerability was found in VICIdial up to 2.14b0.5. It has been declared as critical. This vulnerability affects unknown code of the file /vicidial/admin.php. The manipulation of the argument modify_email_accounts/access_recordings/agentcall_email leads to sql injection.
This vulnerability was named CVE-2022-34876. The attack can be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.