Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2021-37832

Опубликовано: 03 авг. 2021
Источник: debian
EPSS Средний

Описание

A SQL injection vulnerability exists in version 3.0.2 of Hotel Druid when SQLite is being used as the application database. A malicious attacker can issue SQL commands to the SQLite database through the vulnerable idappartamenti parameter.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
hoteldruidfixed3.0.3-1package
hoteldruidno-dsabullseyepackage
hoteldruidno-dsabusterpackage
hoteldruidno-dsastretchpackage

Примечания

  • https://github.com/dievus/CVE-2021-37832

EPSS

Процентиль: 93%
0.1007
Средний

Связанные уязвимости

CVSS3: 9.8
ubuntu
больше 4 лет назад

A SQL injection vulnerability exists in version 3.0.2 of Hotel Druid when SQLite is being used as the application database. A malicious attacker can issue SQL commands to the SQLite database through the vulnerable idappartamenti parameter.

CVSS3: 9.8
nvd
больше 4 лет назад

A SQL injection vulnerability exists in version 3.0.2 of Hotel Druid when SQLite is being used as the application database. A malicious attacker can issue SQL commands to the SQLite database through the vulnerable idappartamenti parameter.

github
больше 3 лет назад

A SQL injection vulnerability exists in version 3.0.2 of Hotel Druid when SQLite is being used as the application database. A malicious attacker can issue SQL commands to the SQLite database through the vulnerable idappartamenti parameter.

EPSS

Процентиль: 93%
0.1007
Средний