CVE-2023-33366: Supremainc Biostar 2
High severity, CVSS 8.8. EPSS: 0.6% chance of exploitation in the next 30 days.
A SQL injection vulnerability exists in Suprema BioStar 2 before 2.9.1, which allows authenticated users to inject arbitrary SQL directives into an SQL statement and execute arbitrary SQL commands.
Affected products
- Supremainc Biostar 2: before 2.9.1 (fixed in 2.9.1)
Published 2023-08-03. Last modified 2026-06-17.