Описание
TAIWAN SECOM CO., LTD., a Door Access Control and Personnel Attendance Management system, contains a vulnerability of Pre-auth SQL Injection, allowing attackers to inject a specific SQL command.
Ссылки
- Third Party Advisory
- Third Party Advisory
- Third Party Advisory
- Third Party Advisory
- Third Party Advisory
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 3.3.2 (исключая)Версия до 3.3.0.3_20160517 (исключая)
Одно из
cpe:2.3:a:secom:dr.id_access_control:*:*:*:*:*:*:*:*
cpe:2.3:a:secom:dr.id_attendance_system:*:*:*:*:*:*:*:*
EPSS
Процентиль: 59%
0.00375
Низкий
9.8 Critical
CVSS3
7.5 High
CVSS2
Дефекты
CWE-89
Связанные уязвимости
github
больше 3 лет назад
Secom Co. Dr.ID, a Door Access Control and Personnel Attendance Management system, contains a vulnerability of Pre-auth SQL Injection, allowing attackers to inject a specific SQL command.
EPSS
Процентиль: 59%
0.00375
Низкий
9.8 Critical
CVSS3
7.5 High
CVSS2
Дефекты
CWE-89