Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6jqc-mwfj-6xjc

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

Affected versions of Octopus Server are prone to an authenticated SQL injection vulnerability in the Events REST API because user supplied data in the API request isn’t parameterised correctly. Exploiting this vulnerability could allow unauthorised access to database tables.

Affected versions of Octopus Server are prone to an authenticated SQL injection vulnerability in the Events REST API because user supplied data in the API request isn’t parameterised correctly. Exploiting this vulnerability could allow unauthorised access to database tables.

EPSS

Процентиль: 46%
0.00232
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 4.3
nvd
больше 4 лет назад

Affected versions of Octopus Server are prone to an authenticated SQL injection vulnerability in the Events REST API because user supplied data in the API request isn’t parameterised correctly. Exploiting this vulnerability could allow unauthorised access to database tables.

EPSS

Процентиль: 46%
0.00232
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-89