Описание
A vulnerability has been discovered in Diño Physics School Assistant version 2.3. The vulnerability impacts an unidentified code within the file /classes/Master.php?f=view_item. Manipulating the argument id can result in SQL injection.
Ссылки
- ExploitThird Party Advisory
- ExploitThird Party Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:dino_physics_school_assistant_project:dino_physics_school_assistant:2.3:*:*:*:*:*:*:*
EPSS
Процентиль: 37%
0.00158
Низкий
9.8 Critical
CVSS3
5.4 Medium
CVSS3
Дефекты
CWE-89
CWE-89
EPSS
Процентиль: 37%
0.00158
Низкий
9.8 Critical
CVSS3
5.4 Medium
CVSS3
Дефекты
CWE-89
CWE-89