Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rwcf-gq22-ph83

Опубликовано: 01 нояб. 2022
Источник: github
Github: Прошло ревью
CVSS3: 8.8

Описание

IBAX go-ibax vulnerable to SQL injection

A vulnerability, which was classified as critical, has been found in IBAX go-ibax. Affected by this issue is some unknown functionality of the file /api/v2/open/rowsInfo. The manipulation of the argument table_name leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-212636.

Пакеты

Наименование

github.com/IBAX-io/go-ibax

go
Затронутые версииВерсия исправления

< 1.4.2

1.4.2

EPSS

Процентиль: 96%
0.25872
Средний

8.8 High

CVSS3

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 6.3
nvd
больше 3 лет назад

A vulnerability, which was classified as critical, has been found in IBAX go-ibax. Affected by this issue is some unknown functionality of the file /api/v2/open/rowsInfo. The manipulation of the argument table_name leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-212636.

EPSS

Процентиль: 96%
0.25872
Средний

8.8 High

CVSS3

Дефекты

CWE-89