Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-26822

Опубликовано: 15 фев. 2021
Источник: nvd
CVSS3: 9.8
CVSS2: 7.5
EPSS Низкий

Описание

Teachers Record Management System 1.0 is affected by a SQL injection vulnerability in 'searchteacher' POST parameter in search-teacher.php. This vulnerability can be exploited by a remote unauthenticated attacker to leak sensitive information and perform code execution attacks.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:phpgurukul:teachers_record_management_system:1.0:*:*:*:*:*:*:*

EPSS

Процентиль: 93%
0.09893
Низкий

9.8 Critical

CVSS3

7.5 High

CVSS2

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 9.8
github
больше 3 лет назад

Teachers Record Management System 1.0 is affected by a SQL injection vulnerability in 'searchteacher' POST parameter in search-teacher.php. This vulnerability can be exploited by a remote unauthenticated attacker to leak sensitive information and perform code execution attacks.

EPSS

Процентиль: 93%
0.09893
Низкий

9.8 Critical

CVSS3

7.5 High

CVSS2

Дефекты

CWE-89