CVE Wiki Pixee · CVE intelligence
← All CVEs

CVE-2023-29863

Critical · CVSS 9.8

Medical Systems Co. Medisys Weblab — SQL Injection via WSDL parameter (CWE-89)

CVSS
9.8
nvd
EPSS
1.02%
59th pct
KEV
No
Class
other
CWE-89, CWE-89

Description

Medical Systems Co. Medisys Weblab Products v19.4.03 was discovered to contain a SQL injection vulnerability via the tem:statement parameter in the WSDL files.

Search profile — drives PoC discovery

Symbols tem:statementWSDLMedisysWeblabtem:statement parameterWSDL SQL injection
Keywords CVE-2023-29863Medisys Weblab SQL injectionWSDL SQL injectiontem:statement SQLiMedical Systems Co MedisysWeblab v19.4.03 SQLiWSDL file SQL injection PoC
Versions: v19.4.03

References

Status: enriched · ingested 2026-07-05T06:00:39.000Z · profiled 2026-07-05T18:30:39.000Z