Логотип exploitDog
bind:CVE-2025-46052
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-46052

Количество 2

Количество 2

nvd логотип

CVE-2025-46052

9 месяцев назад

An error-based SQL Injection (SQLi) vulnerability in WebERP v4.15.2 allows attackers to execute arbitrary SQL command and extract sensitive data by injecting a crafted payload into the DEL form field in a POST request to /StockCounts.php

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-hm4p-7q9f-fx6q

9 месяцев назад

An error-based SQL Injection (SQLi) vulnerability in WebERP v4.15.2 allows attackers to execute arbitrary SQL command and extract sensitive data by injecting a crafted payload into the DEL form field in a POST request to /StockCounts.php

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-46052

An error-based SQL Injection (SQLi) vulnerability in WebERP v4.15.2 allows attackers to execute arbitrary SQL command and extract sensitive data by injecting a crafted payload into the DEL form field in a POST request to /StockCounts.php

CVSS3: 9.8
0%
Низкий
9 месяцев назад
github логотип
GHSA-hm4p-7q9f-fx6q

An error-based SQL Injection (SQLi) vulnerability in WebERP v4.15.2 allows attackers to execute arbitrary SQL command and extract sensitive data by injecting a crafted payload into the DEL form field in a POST request to /StockCounts.php

CVSS3: 9.8
0%
Низкий
9 месяцев назад

Уязвимостей на страницу