Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-j4qj-cw7h-263q

Опубликовано: 14 дек. 2021
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

SQL injection bypass authentication vulnerability in PHPGURUKUL Employee Record Management System 1.2 via index.php. An attacker can log in as an admin account of this system and can destroy, change or manipulate all sensitive information on the system.

SQL injection bypass authentication vulnerability in PHPGURUKUL Employee Record Management System 1.2 via index.php. An attacker can log in as an admin account of this system and can destroy, change or manipulate all sensitive information on the system.

EPSS

Процентиль: 32%
0.00125
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 9.8
nvd
около 4 лет назад

SQL injection bypass authentication vulnerability in PHPGURUKUL Employee Record Management System 1.2 via index.php. An attacker can log in as an admin account of this system and can destroy, change or manipulate all sensitive information on the system.

EPSS

Процентиль: 32%
0.00125
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-89