Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x4pr-pf8x-7x89

Опубликовано: 24 янв. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

A SQL Injection vulnerability exists in the login form of Online Food Ordering System v1.0. The vulnerability arises because the input fields username and password are not properly sanitized, allowing attackers to inject malicious SQL queries to bypass authentication and gain unauthorized access.

A SQL Injection vulnerability exists in the login form of Online Food Ordering System v1.0. The vulnerability arises because the input fields username and password are not properly sanitized, allowing attackers to inject malicious SQL queries to bypass authentication and gain unauthorized access.

EPSS

Процентиль: 42%
0.00202
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 9.8
nvd
около 1 года назад

A SQL Injection vulnerability exists in the login form of Online Food Ordering System v1.0. The vulnerability arises because the input fields username and password are not properly sanitized, allowing attackers to inject malicious SQL queries to bypass authentication and gain unauthorized access.

EPSS

Процентиль: 42%
0.00202
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-89