Логотип exploitDog
bind:CVE-2022-30335
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-30335

Количество 2

Количество 2

nvd логотип

CVE-2022-30335

больше 3 лет назад

Bonanza Wealth Management System (BWM) 7.3.2 allows SQL injection via the login form. Users who supply the application with a SQL injection payload in the User Name textbox could collect all passwords in encrypted format from the Microsoft SQL Server component.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-6cr5-vh9x-gh55

больше 3 лет назад

Bonanza Wealth Management System (BWM) 7.3.2 allows SQL injection via the login form. Users who supply the application with a SQL injection payload in the User Name textbox could collect all passwords in encrypted format from the Microsoft SQL Server component.

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-30335

Bonanza Wealth Management System (BWM) 7.3.2 allows SQL injection via the login form. Users who supply the application with a SQL injection payload in the User Name textbox could collect all passwords in encrypted format from the Microsoft SQL Server component.

CVSS3: 9.8
0%
Низкий
больше 3 лет назад
github логотип
GHSA-6cr5-vh9x-gh55

Bonanza Wealth Management System (BWM) 7.3.2 allows SQL injection via the login form. Users who supply the application with a SQL injection payload in the User Name textbox could collect all passwords in encrypted format from the Microsoft SQL Server component.

CVSS3: 9.8
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу