CVE-2023-29863
Critical · CVSS 9.8Medical Systems Co. Medisys Weblab — SQL Injection via WSDL parameter (CWE-89)
- CVSS
- 9.8
- nvd
- EPSS
- 1.02%
- 59th pct
- KEV
- No
- Class
- other
- CWE-89, CWE-89
Description
Medical Systems Co. Medisys Weblab Products v19.4.03 was discovered to contain a SQL injection vulnerability via the tem:statement parameter in the WSDL files.
Search profile — drives PoC discovery
Symbols tem:statementWSDLMedisysWeblabtem:statement parameterWSDL SQL injection
Keywords CVE-2023-29863Medisys Weblab SQL injectionWSDL SQL injectiontem:statement SQLiMedical Systems Co MedisysWeblab v19.4.03 SQLiWSDL file SQL injection PoC
Versions: v19.4.03
References
Status: enriched · ingested 2026-07-05T06:00:39.000Z · profiled 2026-07-05T18:30:39.000Z