Описание
Raffle Draw System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at get_ticket.php.
Ссылки
- https://github.com/xiumulty/CVE/blob/main/Raffle%20draw%20system%20v1.0/sql%20in%20get_ticket.php.mdExploitThird Party Advisory
- Product
- https://github.com/xiumulty/CVE/blob/main/Raffle%20draw%20system%20v1.0/sql%20in%20get_ticket.php.mdExploitThird Party Advisory
- Product
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:oretnom23:raffle_draw_system:1.0:*:*:*:*:*:*:*
EPSS
Процентиль: 25%
0.00083
Низкий
9.8 Critical
CVSS3
Дефекты
CWE-89
CWE-789
Связанные уязвимости
CVSS3: 9.8
github
около 3 лет назад
Raffle Draw System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at get_ticket.php.
EPSS
Процентиль: 25%
0.00083
Низкий
9.8 Critical
CVSS3
Дефекты
CWE-89
CWE-789