Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wmcg-whfp-429v

Опубликовано: 19 окт. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 2
CVSS3: 4.7

Описание

A vulnerability was determined in givanz Vvveb up to 1.0.7.3. This affects the function Import of the file admin/controller/tools/import.php of the component Raw SQL Handler. This manipulation causes sql injection. The attack may be initiated remotely. The exploit has been publicly disclosed and may be utilized. Patch name: 52204b4a106b2fb02d16eee06a88a1f2697f9b35. It is recommended to apply a patch to fix this issue.

A vulnerability was determined in givanz Vvveb up to 1.0.7.3. This affects the function Import of the file admin/controller/tools/import.php of the component Raw SQL Handler. This manipulation causes sql injection. The attack may be initiated remotely. The exploit has been publicly disclosed and may be utilized. Patch name: 52204b4a106b2fb02d16eee06a88a1f2697f9b35. It is recommended to apply a patch to fix this issue.

EPSS

Процентиль: 17%
0.00054
Низкий

2 Low

CVSS4

4.7 Medium

CVSS3

Дефекты

CWE-74
CWE-89

Связанные уязвимости

CVSS3: 4.7
nvd
4 месяца назад

A vulnerability was determined in givanz Vvveb up to 1.0.7.3. This affects the function Import of the file admin/controller/tools/import.php of the component Raw SQL Handler. This manipulation causes sql injection. The attack may be initiated remotely. The exploit has been publicly disclosed and may be utilized. Patch name: 52204b4a106b2fb02d16eee06a88a1f2697f9b35. It is recommended to apply a patch to fix this issue.

EPSS

Процентиль: 17%
0.00054
Низкий

2 Low

CVSS4

4.7 Medium

CVSS3

Дефекты

CWE-74
CWE-89