Логотип exploitDog
bind:CVE-2018-16659
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2018-16659

Количество 2

Количество 2

nvd логотип

CVE-2018-16659

больше 7 лет назад

An issue was discovered in Rausoft ID.prove 2.95. The login page allows SQL injection via Microsoft SQL Server stacked queries in the Username POST parameter. Hypothetically, an attacker can utilize master..xp_cmdshell for the further privilege elevation.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-8mx7-w42g-2rch

больше 3 лет назад

An issue was discovered in Rausoft ID.prove 2.95. The login page allows SQL injection via Microsoft SQL Server stacked queries in the Username POST parameter. Hypothetically, an attacker can utilize master..xp_cmdshell for the further privilege elevation.

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2018-16659

An issue was discovered in Rausoft ID.prove 2.95. The login page allows SQL injection via Microsoft SQL Server stacked queries in the Username POST parameter. Hypothetically, an attacker can utilize master..xp_cmdshell for the further privilege elevation.

CVSS3: 9.8
2%
Низкий
больше 7 лет назад
github логотип
GHSA-8mx7-w42g-2rch

An issue was discovered in Rausoft ID.prove 2.95. The login page allows SQL injection via Microsoft SQL Server stacked queries in the Username POST parameter. Hypothetically, an attacker can utilize master..xp_cmdshell for the further privilege elevation.

CVSS3: 9.8
2%
Низкий
больше 3 лет назад

Уязвимостей на страницу