Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-92m7-gm53-fg8x

Опубликовано: 04 сент. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 9.3

Описание

Input from search query parameter in GOV CMS is not sanitized properly, leading to a Blind SQL injection vulnerability, which might be exploited by an unauthenticated remote attacker.

Versions 4.0 and above are not affected.

Input from search query parameter in GOV CMS is not sanitized properly, leading to a Blind SQL injection vulnerability, which might be exploited by an unauthenticated remote attacker.

Versions 4.0 and above are not affected.

EPSS

Процентиль: 37%
0.00159
Низкий

9.3 Critical

CVSS4

Дефекты

CWE-89

Связанные уязвимости

nvd
5 месяцев назад

Input from search query parameter in GOV CMS is not sanitized properly, leading to a Blind SQL injection vulnerability, which might be exploited by an unauthenticated remote attacker. Versions 4.0 and above are not affected.

EPSS

Процентиль: 37%
0.00159
Низкий

9.3 Critical

CVSS4

Дефекты

CWE-89