CVE-2024-26264 — EBM Technologies RISWEB's specific query function parameter does not properly restrict user input, and this feature page is accessible without login. This allows remote attackers to inject SQL com — CVE Database · The Intelligence Room