Описание
The library automation system product KOHA developed by Parantez Teknoloji before version 19.05.03 has an unauthenticated SQL Injection vulnerability. This has been fixed in the version 19.05.03.01.
Ссылки
- Third Party Advisory
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 19.05.03.01 (исключая)
cpe:2.3:a:parantezteknoloji:koha_library_automation:*:*:*:*:*:*:*:*
EPSS
Процентиль: 62%
0.0043
Низкий
9.4 Critical
CVSS3
9.8 Critical
CVSS3
Дефекты
CWE-89
CWE-89
Связанные уязвимости
CVSS3: 9.8
github
больше 3 лет назад
The library automation system product KOHA developed by Parantez Teknoloji before version 19.05.03 has an unauthenticated SQL Injection vulnerability. This has been fixed in the version 19.05.03.01.
EPSS
Процентиль: 62%
0.0043
Низкий
9.4 Critical
CVSS3
9.8 Critical
CVSS3
Дефекты
CWE-89
CWE-89