Security ID : QSA-23-32
Vulnerability in QuMagie
Release date : January 6, 2024
CVE identifier : CVE-2023-47219
Affected products: QuMagie 2.2.x
Severity
Low
Status
Resolved
Summary
An SQL injection vulnerability has been reported to affect QuMagie. If exploited, the vulnerability could allow authenticated users to inject malicious code via a network.
We have already fixed the vulnerability in the following version:
| Affected Product | Fixed Version |
| QuMagie 2.2.x | QuMagie 2.2.1 and later |
Recommendation
To fix the vulnerability, we recommend updating QuMagie to the latest version.
Updating QuMagie
- Log on to QTS or QuTS hero as an administrator.
- Open App Center and then click
.
A search box appears. - Type "QuMagie" and then press ENTER.
QuMagie appears in the search results. - Click Update.
A confirmation message appears.
Note: The Update button is not available if your QuMagie is already up to date. - Click OK.
The system updates the application.
Attachment
Revision History:
V1.0 (January 06, 2024) - Published