Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jxgv-5936-493f

Опубликовано: 19 фев. 2022
Источник: github
Github: Не прошло ревью

Описание

Unsanitized user input in ExpressionEngine <= 5.4.0 control panel member creation leads to an SQL injection. The user needs member creation/admin control panel access to execute the attack.

Unsanitized user input in ExpressionEngine <= 5.4.0 control panel member creation leads to an SQL injection. The user needs member creation/admin control panel access to execute the attack.

EPSS

Процентиль: 55%
0.00323
Низкий

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 7.2
nvd
почти 4 года назад

Unsanitized user input in ExpressionEngine <= 5.4.0 control panel member creation leads to an SQL injection. The user needs member creation/admin control panel access to execute the attack.

EPSS

Процентиль: 55%
0.00323
Низкий

Дефекты

CWE-89