Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9fgp-q6c5-7cgx

Опубликовано: 10 сент. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 5.5
CVSS3: 9.8

Описание

A vulnerability was identified in 1000projects Beauty Parlour Management System 1.0. This affects an unknown function of the file /admin/bwdates-reports-details.php. The manipulation of the argument fromdate/todate leads to sql injection. It is possible to initiate the attack remotely. The exploit is publicly available and might be used.

A vulnerability was identified in 1000projects Beauty Parlour Management System 1.0. This affects an unknown function of the file /admin/bwdates-reports-details.php. The manipulation of the argument fromdate/todate leads to sql injection. It is possible to initiate the attack remotely. The exploit is publicly available and might be used.

EPSS

Процентиль: 8%
0.00032
Низкий

5.5 Medium

CVSS4

9.8 Critical

CVSS3

Дефекты

CWE-74
CWE-89

Связанные уязвимости

CVSS3: 7.3
nvd
около 1 месяца назад

A vulnerability was identified in 1000projects Beauty Parlour Management System 1.0. This affects an unknown function of the file /admin/bwdates-reports-details.php. The manipulation of the argument fromdate/todate leads to sql injection. It is possible to initiate the attack remotely. The exploit is publicly available and might be used.

EPSS

Процентиль: 8%
0.00032
Низкий

5.5 Medium

CVSS4

9.8 Critical

CVSS3

Дефекты

CWE-74
CWE-89