Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vpwx-h6w7-p6j9

Опубликовано: 23 нояб. 2024
Источник: github
Github: Не прошло ревью
CVSS4: 6.9
CVSS3: 9.8

Описание

A vulnerability, which was classified as critical, has been found in 1000 Projects Bookstore Management System 1.0. Affected by this issue is some unknown functionality of the file /forget_password_process.php. The manipulation of the argument unm leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.

A vulnerability, which was classified as critical, has been found in 1000 Projects Bookstore Management System 1.0. Affected by this issue is some unknown functionality of the file /forget_password_process.php. The manipulation of the argument unm leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.

EPSS

Процентиль: 8%
0.00029
Низкий

6.9 Medium

CVSS4

9.8 Critical

CVSS3

Дефекты

CWE-74
CWE-89

Связанные уязвимости

CVSS3: 7.3
nvd
около 1 года назад

A vulnerability, which was classified as critical, has been found in 1000 Projects Bookstore Management System 1.0. Affected by this issue is some unknown functionality of the file /forget_password_process.php. The manipulation of the argument unm leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.

EPSS

Процентиль: 8%
0.00029
Низкий

6.9 Medium

CVSS4

9.8 Critical

CVSS3

Дефекты

CWE-74
CWE-89