CVE-2023-27779
Critical · CVSS 9.8AM Presencia — SQL Injection (CWE-89) in login form user parameter
- CVSS
- 9.8
- nvd
- EPSS
- —
- KEV
- No
- Class
- other
- CWE-89, CWE-89
Description
AM Presencia v3.7.3 was discovered to contain a SQL injection vulnerability via the user parameter in the login form.
Search profile — drives PoC discovery
Symbols userloginAM Presenciaalosuiteportalempleado
Keywords CVE-2023-27779AM PresenciaSQL injectionlogin formuser parameterAMSystemalosuitev3.7.3
Versions: 3.7.3
Ranked PoCs (1) — best first
Heuristic ranking — not yet expert-vetted. Scored on structure + provenance, not execution.
- ★ 0
Recall-favoring discovery; ranking by the Stage-4 scorer (Adam's rubric). Scanner/aggregator repos are hidden.
References
- https://amsystem.es/
- https://docs.google.com/document/d/1kGzmc6AOCfRzJf9mDz4emkhQj84Y1XemmAMZjYK32-o/edit?usp=sharing
- https://portalempleado.alosuite.com/home
- http://alo.com
- https://amsystem.es/
- https://docs.google.com/document/d/1kGzmc6AOCfRzJf9mDz4emkhQj84Y1XemmAMZjYK32-o/edit?usp=sharing
- https://portalempleado.alosuite.com/home
Status: enriched · ingested 2026-07-05T06:00:39.000Z · profiled 2026-07-05T18:30:39.000Z