Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hhg5-qh7h-f99g

Опубликовано: 22 фев. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

A SQL Injection vulnerability in /admin/convert/export.class.php in PMB 7.4.7 and earlier versions allows remote unauthenticated attackers to execute arbitrary SQL commands via the query parameter in get_next_notice function.

A SQL Injection vulnerability in /admin/convert/export.class.php in PMB 7.4.7 and earlier versions allows remote unauthenticated attackers to execute arbitrary SQL commands via the query parameter in get_next_notice function.

EPSS

Процентиль: 74%
0.00813
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 9.8
nvd
почти 2 года назад

A SQL Injection vulnerability in /admin/convert/export.class.php in PMB 7.4.7 and earlier versions allows remote unauthenticated attackers to execute arbitrary SQL commands via the query parameter in get_next_notice function.

EPSS

Процентиль: 74%
0.00813
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-89