Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-44655

Опубликовано: 15 дек. 2021
Источник: nvd
CVSS3: 9.8
CVSS2: 7.5
EPSS Низкий

Описание

Online Pre-owned/Used Car Showroom Management System 1.0 contains a SQL injection authentication bypass vulnerability. Admin panel authentication can be bypassed due to SQL injection vulnerability in the login form allowing attacker to get admin access on the application.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:online_pre-owned\/used_car_showroom_management_system_project:online_pre-owned\/used_car_showroom_management_system:1.0:*:*:*:*:*:*:*

EPSS

Процентиль: 50%
0.00268
Низкий

9.8 Critical

CVSS3

7.5 High

CVSS2

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 9.8
github
около 4 лет назад

Online Pre-owned/Used Car Showroom Management System 1.0 contains a SQL injection authentication bypass vulnerability. Admin panel authentication can be bypassed due to SQL injection vulnerability in the login form allowing attacker to get admin access on the application.

EPSS

Процентиль: 50%
0.00268
Низкий

9.8 Critical

CVSS3

7.5 High

CVSS2

Дефекты

CWE-89