Security Advisory

CVE-2021-37599

9.8
CRITICAL

Vulnerability Description

The exporter/Login.aspx login form in the Exporter in Nuance Winscribe Dictation 4.1.0.99 is vulnerable to SQL injection that allows a remote, unauthenticated attacker to read the database (and execute code in some situations) via the txtPassword parameter.
Published Date August 12, 2021
Official Source NIST NVD Advisory