Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p5p3-cc32-x85v

Опубликовано: 27 фев. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Signum Technology Promotion and Training Inc. Windesk.Fm allows SQL Injection.This issue affects windesk.Fm: through 27022026.

NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Signum Technology Promotion and Training Inc. Windesk.Fm allows SQL Injection.This issue affects windesk.Fm: through 27022026.

NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

EPSS

Процентиль: 4%
0.00016
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 9.8
nvd
2 месяца назад

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Signum Technology Promotion and Training Inc. Windesk.Fm allows SQL Injection.This issue affects windesk.Fm: before v2.3.4.  NOTE:  The vendor patched the vulnerability after the CVE was published.

EPSS

Процентиль: 4%
0.00016
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-89