Описание
Wifi Soft Unibox Administration 3.0 and 3.1 is vulnerable to SQL Injection. The vulnerability occurs because of not validating or sanitizing the user input in the username field of the login page.
Ссылки
- ExploitThird Party AdvisoryVDB Entry
- ExploitThird Party AdvisoryVDB Entry
- ExploitThird Party AdvisoryVDB Entry
- ExploitThird Party AdvisoryVDB Entry
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:wifi-soft:unibox_administration:3.0:*:*:*:*:*:*:*
cpe:2.3:a:wifi-soft:unibox_administration:3.1:*:*:*:*:*:*:*
EPSS
Процентиль: 36%
0.00152
Низкий
9.8 Critical
CVSS3
Дефекты
CWE-89
Связанные уязвимости
CVSS3: 9.8
github
больше 2 лет назад
Wifi Soft Unibox Administration 3.0 and 3.1 is vulnerable to SQL Injection. The vulnerability occurs because of not validating or sanitizing the user input in the username field of the login page.
EPSS
Процентиль: 36%
0.00152
Низкий
9.8 Critical
CVSS3
Дефекты
CWE-89