Логотип exploitDog
bind:CVE-2022-42744
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-42744

Количество 2

Количество 2

nvd логотип

CVE-2022-42744

больше 3 лет назад

CandidATS version 3.0.0 allows an external attacker to perform CRUD operations on the application databases. This is possible because the application does not correctly validate the entriesPerPage parameter against SQLi attacks.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-942w-mcgr-2rjq

больше 3 лет назад

CandidATS version 3.0.0 allows an external attacker to perform CRUD operations on the application databases. This is possible because the application does not correctly validate the entriesPerPage parameter against SQLi attacks.

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-42744

CandidATS version 3.0.0 allows an external attacker to perform CRUD operations on the application databases. This is possible because the application does not correctly validate the entriesPerPage parameter against SQLi attacks.

CVSS3: 9.8
1%
Низкий
больше 3 лет назад
github логотип
GHSA-942w-mcgr-2rjq

CandidATS version 3.0.0 allows an external attacker to perform CRUD operations on the application databases. This is possible because the application does not correctly validate the entriesPerPage parameter against SQLi attacks.

CVSS3: 9.8
1%
Низкий
больше 3 лет назад

Уязвимостей на страницу