Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rjjm-jvpm-8994

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

SQL injection vulnerability in index.php in ContentNow 1.39 and earlier allows remote attackers to execute arbitrary SQL commands via the pageid parameter. NOTE: this issue can be leveraged for path disclosure with an invalid pageid parameter.

SQL injection vulnerability in index.php in ContentNow 1.39 and earlier allows remote attackers to execute arbitrary SQL commands via the pageid parameter. NOTE: this issue can be leveraged for path disclosure with an invalid pageid parameter.

EPSS

Процентиль: 89%
0.04983
Низкий

Дефекты

CWE-89

Связанные уязвимости

nvd
около 19 лет назад

SQL injection vulnerability in index.php in ContentNow 1.39 and earlier allows remote attackers to execute arbitrary SQL commands via the pageid parameter. NOTE: this issue can be leveraged for path disclosure with an invalid pageid parameter.

EPSS

Процентиль: 89%
0.04983
Низкий

Дефекты

CWE-89