Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x53j-487w-qw49

Опубликовано: 15 окт. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

SQL injection vulnerability in TAI Smart Factory's QPLANT SF version 1.0. Exploitation of this vulnerability could allow a remote attacker to retrieve all database information by sending a specially crafted SQL query to the ‘email’ parameter on the ‘RequestPasswordChange’ endpoint.

SQL injection vulnerability in TAI Smart Factory's QPLANT SF version 1.0. Exploitation of this vulnerability could allow a remote attacker to retrieve all database information by sending a specially crafted SQL query to the ‘email’ parameter on the ‘RequestPasswordChange’ endpoint.

EPSS

Процентиль: 73%
0.00763
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 9.8
nvd
больше 1 года назад

SQL injection vulnerability in TAI Smart Factory's QPLANT SF version 1.0. Exploitation of this vulnerability could allow a remote attacker to retrieve all database information by sending a specially crafted SQL query to the ‘email’ parameter on the ‘RequestPasswordChange’ endpoint.

EPSS

Процентиль: 73%
0.00763
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-89