A vulnerability was found in coderd-repos Eva 1.0.0 and classified as critical. Affected by this issue is some unknown functionality of the file /system/traceLog/page of the component HTTP POST Request Handler. The manipulation of the argument property leads to sql injection.
This vulnerability is handled as CVE-2024-0357. The attack needs to be approached within the local network. Furthermore, there is an exploit available.