Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qq4p-5ffp-5c3r

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

Due to improper sanitization MedData HBYS software suffers from a remote SQL injection vulnerability. An unauthenticated attacker with the web access is able to extract critical information from the system.

Due to improper sanitization MedData HBYS software suffers from a remote SQL injection vulnerability. An unauthenticated attacker with the web access is able to extract critical information from the system.

EPSS

Процентиль: 48%
0.0025
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 9.9
nvd
около 4 лет назад

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in MedData HBYS allows SQL Injection.This issue affects HBYS: from unspecified before 1.1.

EPSS

Процентиль: 48%
0.0025
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-89