Описание
Sourcecodester Lost and Found Information System's Version 1.0 is vulnerable to unauthenticated SQL Injection at "?page=items/view&id=*" which can be escalated to the remote command execution.
Ссылки
- Third Party Advisory
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:oretnom23:lost_and_found_information_system:1.0:*:*:*:*:*:*:*
EPSS
Процентиль: 64%
0.00472
Низкий
8.4 High
CVSS3
Дефекты
CWE-89
Связанные уязвимости
CVSS3: 8.4
github
почти 2 года назад
Sourcecodester Lost and Found Information System's Version 1.0 is vulnerable to unauthenticated SQL Injection at "?page=items/view&id=*" which can be escalated to the remote command execution.
EPSS
Процентиль: 64%
0.00472
Низкий
8.4 High
CVSS3
Дефекты
CWE-89