Логотип exploitDog
bind:CVE-2020-37051
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-37051

Количество 2

Количество 2

nvd логотип

CVE-2020-37051

9 дней назад

Online-Exam-System 2015 contains a time-based blind SQL injection vulnerability in the feedback form that allows attackers to extract database password hashes. Attackers can exploit the 'feed.php' endpoint by crafting malicious payload requests that use time delays to systematically enumerate user password characters.

CVSS3: 8.2
EPSS: Низкий
github логотип

GHSA-7x34-mvv5-p43g

9 дней назад

Online-Exam-System 2015 contains a time-based blind SQL injection vulnerability in the feedback form that allows attackers to extract database password hashes. Attackers can exploit the 'feed.php' endpoint by crafting malicious payload requests that use time delays to systematically enumerate user password characters.

CVSS3: 8.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-37051

Online-Exam-System 2015 contains a time-based blind SQL injection vulnerability in the feedback form that allows attackers to extract database password hashes. Attackers can exploit the 'feed.php' endpoint by crafting malicious payload requests that use time delays to systematically enumerate user password characters.

CVSS3: 8.2
0%
Низкий
9 дней назад
github логотип
GHSA-7x34-mvv5-p43g

Online-Exam-System 2015 contains a time-based blind SQL injection vulnerability in the feedback form that allows attackers to extract database password hashes. Attackers can exploit the 'feed.php' endpoint by crafting malicious payload requests that use time delays to systematically enumerate user password characters.

CVSS3: 8.2
0%
Низкий
9 дней назад

Уязвимостей на страницу