Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pgc6-mrqp-hqww

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью

Описание

SQL injection vulnerability in RASH Quote Management System (RQMS) 1.2.2 and earlier, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the user parameter in an admin action to the default URI.

SQL injection vulnerability in RASH Quote Management System (RQMS) 1.2.2 and earlier, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the user parameter in an admin action to the default URI.

EPSS

Процентиль: 62%
0.00435
Низкий

Дефекты

CWE-89

Связанные уязвимости

nvd
больше 16 лет назад

SQL injection vulnerability in RASH Quote Management System (RQMS) 1.2.2 and earlier, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the user parameter in an admin action to the default URI.

EPSS

Процентиль: 62%
0.00435
Низкий

Дефекты

CWE-89