Описание
SQL injection vulnerability in the login script in Real Estate listing website application template, when logging in as user or manager, allows remote attackers to execute arbitrary SQL commands via the Password parameter.
Ссылки
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:codewidgets:real_estate_listing_website_application_template:*:*:*:*:*:*:*:*
EPSS
Процентиль: 79%
0.01263
Низкий
6.8 Medium
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
почти 4 года назад
SQL injection vulnerability in the login script in Real Estate listing website application template, when logging in as user or manager, allows remote attackers to execute arbitrary SQL commands via the Password parameter.
EPSS
Процентиль: 79%
0.01263
Низкий
6.8 Medium
CVSS2
Дефекты
NVD-CWE-Other