Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-w7cq-7gm8-4jj2

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Echo ShareCare 8.15.5 is susceptible to SQL injection vulnerabilities when processing remote input from both authenticated and unauthenticated users, leading to the ability to bypass authentication, exfiltrate Structured Query Language (SQL) records, and manipulate data.

Echo ShareCare 8.15.5 is susceptible to SQL injection vulnerabilities when processing remote input from both authenticated and unauthenticated users, leading to the ability to bypass authentication, exfiltrate Structured Query Language (SQL) records, and manipulate data.

EPSS

Процентиль: 59%
0.0038
Низкий

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 9.8
nvd
больше 4 лет назад

Echo ShareCare 8.15.5 is susceptible to SQL injection vulnerabilities when processing remote input from both authenticated and unauthenticated users, leading to the ability to bypass authentication, exfiltrate Structured Query Language (SQL) records, and manipulate data.

EPSS

Процентиль: 59%
0.0038
Низкий

Дефекты

CWE-89