Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-56qw-564q-v8rw

Опубликовано: 27 фев. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

A SQL Injection vulnerability has been found in Ciges 2.15.5 from ATISoluciones. This vulnerability allows an attacker to retrieve, create, update and delete database via $idServicio parameter in /modules/ajaxBloqueaCita.php endpoint.

A SQL Injection vulnerability has been found in Ciges 2.15.5 from ATISoluciones. This vulnerability allows an attacker to retrieve, create, update and delete database via $idServicio parameter in /modules/ajaxBloqueaCita.php endpoint.

EPSS

Процентиль: 32%
0.00123
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 9.8
nvd
12 месяцев назад

A SQL Injection vulnerability has been found in Ciges 2.15.5 from ATISoluciones. This vulnerability allows an attacker to retrieve, create, update and delete database via $idServicio parameter in /modules/ajaxBloqueaCita.php endpoint.

EPSS

Процентиль: 32%
0.00123
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-89