Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-ggxg-6g5h-6m7w

Опубликовано: 26 фев. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 8.6

Описание

SIMPLE.ERP is vulnerable to the SQL Injection in search functionality in "Obroty na kontach" window. Lack of input validation allows an authenticated attacker to prepare a malicious query to the database that will be executed. This issue was fixed in 6.30@A04.4_u06.

SIMPLE.ERP is vulnerable to the SQL Injection in search functionality in "Obroty na kontach" window. Lack of input validation allows an authenticated attacker to prepare a malicious query to the database that will be executed. This issue was fixed in 6.30@A04.4_u06.

EPSS

Процентиль: 3%
0.00015
Низкий

8.6 High

CVSS4

Дефекты

CWE-89

Связанные уязвимости

nvd
3 месяца назад

SIMPLE.ERP is vulnerable to the SQL Injection in search functionality in "Obroty na kontach" window. Lack of input validation allows an authenticated attacker to prepare a malicious query to the database that will be executed. This issue was fixed in 6.30@A04.4_u06.

EPSS

Процентиль: 3%
0.00015
Низкий

8.6 High

CVSS4

Дефекты

CWE-89