Описание
A SQL Injection vulnerability was identified in the admin/edit-directory.php file of the PHPGurukul Directory Management System v2.0. Attackers can exploit this vulnerability via the email parameter in a POST request to execute arbitrary SQL commands.
Ссылки
- ExploitThird Party Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:phpgurukul:directory_management_system:2.0:*:*:*:*:*:*:*
EPSS
Процентиль: 11%
0.00039
Низкий
5.3 Medium
CVSS3
Дефекты
CWE-89
Связанные уязвимости
CVSS3: 5.3
github
9 месяцев назад
A SQL Injection vulnerability was identified in the admin/edit-directory.php file of the PHPGurukul Directory Management System v2.0. Attackers can exploit this vulnerability via the email parameter in a POST request to execute arbitrary SQL commands.
EPSS
Процентиль: 11%
0.00039
Низкий
5.3 Medium
CVSS3
Дефекты
CWE-89