Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-52rp-w429-m5h3

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

SQL injection vulnerability in includes/funcs_vendors.php in Censura 1.15.04, and other versions before 1.16.04, allows remote attackers to execute arbitrary SQL commands via the vendorid parameter in a vendor_info cmd action to censura.php.

SQL injection vulnerability in includes/funcs_vendors.php in Censura 1.15.04, and other versions before 1.16.04, allows remote attackers to execute arbitrary SQL commands via the vendorid parameter in a vendor_info cmd action to censura.php.

EPSS

Процентиль: 76%
0.00921
Низкий

Дефекты

CWE-89

Связанные уязвимости

nvd
больше 18 лет назад

SQL injection vulnerability in includes/funcs_vendors.php in Censura 1.15.04, and other versions before 1.16.04, allows remote attackers to execute arbitrary SQL commands via the vendorid parameter in a vendor_info cmd action to censura.php.

EPSS

Процентиль: 76%
0.00921
Низкий

Дефекты

CWE-89