Логотип exploitDog
bind:CVE-2017-5569
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2017-5569

Количество 2

Количество 2

nvd логотип

CVE-2017-5569

около 9 лет назад

An issue was discovered in eClinicalWorks Patient Portal 7.0 build 13. This is a blind SQL injection within the template.jsp, which can be exploited without the need of authentication and via an HTTP POST request, and which can be used to dump database data out to a malicious server, using an out-of-band technique such as select_loadfile().

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-rp4c-hj8r-248j

больше 3 лет назад

An issue was discovered in eClinicalWorks Patient Portal 7.0 build 13. This is a blind SQL injection within the template.jsp, which can be exploited without the need of authentication and via an HTTP POST request, and which can be used to dump database data out to a malicious server, using an out-of-band technique such as select_loadfile().

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2017-5569

An issue was discovered in eClinicalWorks Patient Portal 7.0 build 13. This is a blind SQL injection within the template.jsp, which can be exploited without the need of authentication and via an HTTP POST request, and which can be used to dump database data out to a malicious server, using an out-of-band technique such as select_loadfile().

CVSS3: 9.8
2%
Низкий
около 9 лет назад
github логотип
GHSA-rp4c-hj8r-248j

An issue was discovered in eClinicalWorks Patient Portal 7.0 build 13. This is a blind SQL injection within the template.jsp, which can be exploited without the need of authentication and via an HTTP POST request, and which can be used to dump database data out to a malicious server, using an out-of-band technique such as select_loadfile().

CVSS3: 9.8
2%
Низкий
больше 3 лет назад

Уязвимостей на страницу