NovaCHRON Zeitsysteme GmbH & Co. KG Smart Time Plus v8.x to v8.6 was discovered to contain a SQL injection vulnerability via the addProject method in the smarttimeplus/MySQLConnection endpoint.
This Cyber News was published on www.tenable.com. Publication date: Tue, 25 Feb 2025 00:56:02 +0000