Описание
SQL injection vulnerability in ioRD.asp in RedDot CMS 7.5 Build 7.5.0.48, and possibly other versions including 6.5 and 7.0, allows remote attackers to execute arbitrary SQL commands via the LngId parameter.
Ссылки
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:reddot:cms:6.5:*:*:*:*:*:*:*
cpe:2.3:a:reddot:cms:7.0:*:*:*:*:*:*:*
cpe:2.3:a:reddot:cms:7.5:build_7.5.0.48:*:*:*:*:*:*
EPSS
Процентиль: 75%
0.00905
Низкий
7.5 High
CVSS2
Дефекты
CWE-89
Связанные уязвимости
github
почти 4 года назад
SQL injection vulnerability in ioRD.asp in RedDot CMS 7.5 Build 7.5.0.48, and possibly other versions including 6.5 and 7.0, allows remote attackers to execute arbitrary SQL commands via the LngId parameter.
EPSS
Процентиль: 75%
0.00905
Низкий
7.5 High
CVSS2
Дефекты
CWE-89