Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-41672

Опубликовано: 15 июн. 2022
Источник: nvd
CVSS3: 6.5
CVSS2: 5.5
EPSS Низкий

Описание

PEEL Shopping CMS 9.4.0 is vulnerable to authenticated SQL injection in utilisateurs.php. A user that belongs to the administrator group can inject a malicious SQL query in order to affect the execution logic of the application and retrive information from the database.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:peel:peel_shopping:9.4.0:*:*:*:*:*:*:*

EPSS

Процентиль: 71%
0.00675
Низкий

6.5 Medium

CVSS3

5.5 Medium

CVSS2

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 6.5
github
больше 3 лет назад

PEEL Shopping CMS 9.4.0 is vulnerable to authenticated SQL injection in utilisateurs.php. A user that belongs to the administrator group can inject a malicious SQL query in order to affect the execution logic of the application and retrive information from the database.

EPSS

Процентиль: 71%
0.00675
Низкий

6.5 Medium

CVSS3

5.5 Medium

CVSS2

Дефекты

CWE-89