BQE Known Exploited Vulnerabilities

Evidence-backed KEV intelligence for BQE products — CISA KEV status, confidence, sensor telemetry, and virtual-patch availability.

Total KEVs

1

In CISA KEV

1

Beyond CISA KEV

0

Sensor Observed

0

Virtual Patch Available

0

BQE KEVs Added by Year

Loading...

1 BQE KEV added all time (primary attestation date).

Attested CVEs

CVE Confidence CISA KEV Added
CVE-2021-42258

BQE BillQuick Web Suite 2018 through 2021 before 22.0.9.1 allows SQL injection for unauthenticated remote code execution, as exploited in the wild...

Confirmed In CISA 03 Nov 2021

Common Vulnerability Classes (CWE)

  • CWE-89 — Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') 1

Browse all known exploited vulnerabilities · What is a known exploited vulnerability? · Methodology