Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-59x4-7jm9-mrhq

Опубликовано: 23 дек. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

Improper input handling in /Grocery/search_products_itname.php inPuneethReddyHC event-management 1.0 permits SQL injection via the sitem_name POST parameter. Crafted payloads can alter query logic and disclose database contents. Exploitation may result in sensitive data disclosure and backend compromise.

Improper input handling in /Grocery/search_products_itname.php inPuneethReddyHC event-management 1.0 permits SQL injection via the sitem_name POST parameter. Crafted payloads can alter query logic and disclose database contents. Exploitation may result in sensitive data disclosure and backend compromise.

EPSS

Процентиль: 3%
0.00017
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 9.8
nvd
около 2 месяцев назад

Improper input handling in /Grocery/search_products_itname.php inPuneethReddyHC event-management 1.0 permits SQL injection via the sitem_name POST parameter. Crafted payloads can alter query logic and disclose database contents. Exploitation may result in sensitive data disclosure and backend compromise.

EPSS

Процентиль: 3%
0.00017
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-89