Логотип exploitDog
bind:CVE-2020-37089
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-37089

Количество 2

Количество 2

nvd логотип

CVE-2020-37089

5 дней назад

School ERP Pro 1.0 contains a SQL injection vulnerability in the 'es_messagesid' parameter that allows attackers to manipulate database queries through GET requests. Attackers can exploit the vulnerable parameter by injecting crafted SQL statements to potentially extract, modify, or delete database information.

CVSS3: 8.2
EPSS: Низкий
github логотип

GHSA-85r5-hmf5-6gvm

5 дней назад

School ERP Pro 1.0 contains a SQL injection vulnerability in the 'es_messagesid' parameter that allows attackers to manipulate database queries through GET requests. Attackers can exploit the vulnerable parameter by injecting crafted SQL statements to potentially extract, modify, or delete database information.

CVSS3: 8.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-37089

School ERP Pro 1.0 contains a SQL injection vulnerability in the 'es_messagesid' parameter that allows attackers to manipulate database queries through GET requests. Attackers can exploit the vulnerable parameter by injecting crafted SQL statements to potentially extract, modify, or delete database information.

CVSS3: 8.2
0%
Низкий
5 дней назад
github логотип
GHSA-85r5-hmf5-6gvm

School ERP Pro 1.0 contains a SQL injection vulnerability in the 'es_messagesid' parameter that allows attackers to manipulate database queries through GET requests. Attackers can exploit the vulnerable parameter by injecting crafted SQL statements to potentially extract, modify, or delete database information.

CVSS3: 8.2
0%
Низкий
5 дней назад

Уязвимостей на страницу