Количество 2
Количество 2
CVE-2020-35700
около 5 лет назад
A second-order SQL injection issue in Widgets/TopDevicesController.php (aka the Top Devices dashboard widget) of LibreNMS before 21.1.0 allows remote authenticated attackers to execute arbitrary SQL commands via the sort_order parameter against the /ajax/form/widget-settings endpoint.
CVSS3: 8.8
EPSS: Низкий
GHSA-h59f-p56g-g75v
почти 5 лет назад
SQL Injection in librenms
CVSS3: 8.8
EPSS: Низкий
Уязвимостей на страницу
20
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2020-35700 A second-order SQL injection issue in Widgets/TopDevicesController.php (aka the Top Devices dashboard widget) of LibreNMS before 21.1.0 allows remote authenticated attackers to execute arbitrary SQL commands via the sort_order parameter against the /ajax/form/widget-settings endpoint. | CVSS3: 8.8 | 0% Низкий | около 5 лет назад | |
GHSA-h59f-p56g-g75v SQL Injection in librenms | CVSS3: 8.8 | 0% Низкий | почти 5 лет назад |
Уязвимостей на страницу
20