Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xwp3-267h-rpcj

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The CGE property management system contains SQL Injection vulnerabilities. Remote attackers can inject SQL commands into the parameters in Cookie and obtain data in the database without privilege.

The CGE property management system contains SQL Injection vulnerabilities. Remote attackers can inject SQL commands into the parameters in Cookie and obtain data in the database without privilege.

EPSS

Процентиль: 54%
0.00313
Низкий

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 9.8
nvd
больше 4 лет назад

The CGE property management system contains SQL Injection vulnerabilities. Remote attackers can inject SQL commands into the parameters in Cookie and obtain data in the database without privilege.

EPSS

Процентиль: 54%
0.00313
Низкий

Дефекты

CWE-89