Technical assessment from @SpaceySpacek for BQE BillQuick WebSuite unauthenticated RCE (via SQL injection) CVE-2021-42258—evidently being used to spread ransomware. attackerkb.com/assessments/5…
Another "scary" CVE - a critical #SQLinjection bug affecting BillQuick Web Suite, CVE-2021-42258. Attackers are using unpatched instances of this software in #ransomware attacks. @BleepinComputer
investigates: bit.ly/3BglJcF