Логотип exploitDog
bind:CVE-2020-37006
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-37006

Количество 2

Количество 2

nvd логотип

CVE-2020-37006

10 дней назад

berliCRM 1.0.24 contains a SQL injection vulnerability in the 'src_record' parameter that allows remote attackers to manipulate database queries. Attackers can inject malicious SQL code through a crafted POST request to the index.php endpoint to potentially extract or modify database information.

CVSS3: 8.2
EPSS: Низкий
github логотип

GHSA-hp7f-wr35-xpvj

10 дней назад

berliCRM 1.0.24 contains a SQL injection vulnerability in the 'src_record' parameter that allows remote attackers to manipulate database queries. Attackers can inject malicious SQL code through a crafted POST request to the index.php endpoint to potentially extract or modify database information.

CVSS3: 8.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-37006

berliCRM 1.0.24 contains a SQL injection vulnerability in the 'src_record' parameter that allows remote attackers to manipulate database queries. Attackers can inject malicious SQL code through a crafted POST request to the index.php endpoint to potentially extract or modify database information.

CVSS3: 8.2
0%
Низкий
10 дней назад
github логотип
GHSA-hp7f-wr35-xpvj

berliCRM 1.0.24 contains a SQL injection vulnerability in the 'src_record' parameter that allows remote attackers to manipulate database queries. Attackers can inject malicious SQL code through a crafted POST request to the index.php endpoint to potentially extract or modify database information.

CVSS3: 8.2
0%
Низкий
10 дней назад

Уязвимостей на страницу