Логотип exploitDog
bind:CVE-2020-36112
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-36112

Количество 2

Количество 2

nvd логотип

CVE-2020-36112

около 5 лет назад

CSE Bookstore version 1.0 is vulnerable to time-based blind, boolean-based blind and OR error-based SQL injection in pubid parameter in bookPerPub.php and in cart.php. A successful exploitation of this vulnerability will lead to an attacker dumping the entire database on which the web application is running.

CVSS3: 9.8
EPSS: Высокий
github логотип

GHSA-j2c4-gm52-5cf5

больше 3 лет назад

CSE Bookstore version 1.0 is vulnerable to time-based blind, boolean-based blind and OR error-based SQL injection in pubid parameter in bookPerPub.php and in cart.php. A successful exploitation of this vulnerability will lead to an attacker dumping the entire database on which the web application is running.

EPSS: Высокий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-36112

CSE Bookstore version 1.0 is vulnerable to time-based blind, boolean-based blind and OR error-based SQL injection in pubid parameter in bookPerPub.php and in cart.php. A successful exploitation of this vulnerability will lead to an attacker dumping the entire database on which the web application is running.

CVSS3: 9.8
88%
Высокий
около 5 лет назад
github логотип
GHSA-j2c4-gm52-5cf5

CSE Bookstore version 1.0 is vulnerable to time-based blind, boolean-based blind and OR error-based SQL injection in pubid parameter in bookPerPub.php and in cart.php. A successful exploitation of this vulnerability will lead to an attacker dumping the entire database on which the web application is running.

88%
Высокий
больше 3 лет назад

Уязвимостей на страницу