Логотип exploitDog
bind:CVE-2024-58307
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-58307

Количество 2

Количество 2

nvd логотип

CVE-2024-58307

около 2 месяцев назад

CSZCMS 1.3.0 contains an authenticated SQL injection vulnerability in the members view functionality that allows authenticated attackers to manipulate database queries. Attackers can inject malicious SQL code through the view parameter to potentially execute time-based blind SQL injection attacks and extract database information.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-hgp5-7jww-4753

около 2 месяцев назад

CSZCMS 1.3.0 contains an authenticated SQL injection vulnerability in the members view functionality that allows authenticated attackers to manipulate database queries. Attackers can inject malicious SQL code through the view parameter to potentially execute time-based blind SQL injection attacks and extract database information.

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-58307

CSZCMS 1.3.0 contains an authenticated SQL injection vulnerability in the members view functionality that allows authenticated attackers to manipulate database queries. Attackers can inject malicious SQL code through the view parameter to potentially execute time-based blind SQL injection attacks and extract database information.

CVSS3: 8.8
0%
Низкий
около 2 месяцев назад
github логотип
GHSA-hgp5-7jww-4753

CSZCMS 1.3.0 contains an authenticated SQL injection vulnerability in the members view functionality that allows authenticated attackers to manipulate database queries. Attackers can inject malicious SQL code through the view parameter to potentially execute time-based blind SQL injection attacks and extract database information.

CVSS3: 8.8
0%
Низкий
около 2 месяцев назад

Уязвимостей на страницу