Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7pmr-2h72-mqp4

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

SQL injection vulnerability in users.asp in QuadComm Q-Shop 3.0, and possibly earlier, allows remote attackers to execute arbitrary SQL commands via the (1) UserID and (2) Pwd parameters. NOTE: this might be related to CVE-2004-2108.

SQL injection vulnerability in users.asp in QuadComm Q-Shop 3.0, and possibly earlier, allows remote attackers to execute arbitrary SQL commands via the (1) UserID and (2) Pwd parameters. NOTE: this might be related to CVE-2004-2108.

EPSS

Процентиль: 56%
0.00338
Низкий

Дефекты

CWE-89

Связанные уязвимости

nvd
почти 17 лет назад

SQL injection vulnerability in users.asp in QuadComm Q-Shop 3.0, and possibly earlier, allows remote attackers to execute arbitrary SQL commands via the (1) UserID and (2) Pwd parameters. NOTE: this might be related to CVE-2004-2108.

EPSS

Процентиль: 56%
0.00338
Низкий

Дефекты

CWE-89