CVE-2023-37966: Solwininfotech User Activity Log
Critical severity, CVSS 9.8. EPSS: 0.7% chance of exploitation in the next 30 days.
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Solwin Infotech User Activity Log user-activity-log allows SQL Injection.This issue affects User Activity Log: from n/a through 1.6.2.
Affected products
- Solwininfotech User Activity Log: up to and including 1.6.2
Published 2023-10-31. Last modified 2026-06-17.