Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-74jr-x2w7-635g

Опубликовано: 03 июн. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 9.1

Описание

A SQL Injection vulnerability exists in the ofrs/admin/index.php script of PHPGurukul Online Fire Reporting System 1.2. The vulnerability allows attackers to bypass authentication and gain unauthorized access by injecting SQL commands into the username input field during the login process.

A SQL Injection vulnerability exists in the ofrs/admin/index.php script of PHPGurukul Online Fire Reporting System 1.2. The vulnerability allows attackers to bypass authentication and gain unauthorized access by injecting SQL commands into the username input field during the login process.

EPSS

Процентиль: 10%
0.00035
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 9.1
nvd
больше 1 года назад

A SQL Injection vulnerability exists in the `ofrs/admin/index.php` script of PHPGurukul Online Fire Reporting System 1.2. The vulnerability allows attackers to bypass authentication and gain unauthorized access by injecting SQL commands into the username input field during the login process.

EPSS

Процентиль: 10%
0.00035
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-89