Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9hh8-jr7j-vwg8

Опубликовано: 01 июн. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 7.2

Описание

SQL injection vulnerability exists in the CONPROSYS HMI System (CHS) versions prior to 3.5.3. A user who can access the affected product with an administrative privilege may execute an arbitrary SQL command via specially crafted input to the query setting page.

SQL injection vulnerability exists in the CONPROSYS HMI System (CHS) versions prior to 3.5.3. A user who can access the affected product with an administrative privilege may execute an arbitrary SQL command via specially crafted input to the query setting page.

EPSS

Процентиль: 94%
0.11943
Средний

7.2 High

CVSS3

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 7.2
nvd
больше 2 лет назад

SQL injection vulnerability exists in the CONPROSYS HMI System (CHS) versions prior to 3.5.3. A user who can access the affected product with an administrative privilege may execute an arbitrary SQL command via specially crafted input to the query setting page.

EPSS

Процентиль: 94%
0.11943
Средний

7.2 High

CVSS3

Дефекты

CWE-89