Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p8cc-6qfr-h5gx

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Multiple SQL injection vulnerabilities in C2C Forward Auction Creator 2.0 allow remote attackers to execute arbitrary SQL commands via the (1) pa parameter to auction/asp/list.asp, or the (2) UserID or (3) Password to auction/casp/admin.asp.

Multiple SQL injection vulnerabilities in C2C Forward Auction Creator 2.0 allow remote attackers to execute arbitrary SQL commands via the (1) pa parameter to auction/asp/list.asp, or the (2) UserID or (3) Password to auction/casp/admin.asp.

EPSS

Процентиль: 87%
0.0353
Низкий

Дефекты

CWE-89

Связанные уязвимости

nvd
около 12 лет назад

Multiple SQL injection vulnerabilities in C2C Forward Auction Creator 2.0 allow remote attackers to execute arbitrary SQL commands via the (1) pa parameter to auction/asp/list.asp, or the (2) UserID or (3) Password to auction/casp/admin.asp.

EPSS

Процентиль: 87%
0.0353
Низкий

Дефекты

CWE-89