Логотип exploitDog
bind:CVE-2025-51567
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-51567

Количество 2

Количество 2

nvd логотип

CVE-2025-51567

27 дней назад

A SQL Injection was found in the /exam/user/profile.php page of kashipara Online Exam System V1.0, which allows remote attackers to execute arbitrary SQL command to get unauthorized database access via the rname, rcollage, rnumber, rgender and rpassword parameters in a POST HTTP request.

CVSS3: 9.1
EPSS: Низкий
github логотип

GHSA-xfhq-47hp-mvcx

27 дней назад

A SQL Injection was found in the /exam/user/profile.php page of kashipara Online Exam System V1.0, which allows remote attackers to execute arbitrary SQL command to get unauthorized database access via the rname, rcollage, rnumber, rgender and rpassword parameters in a POST HTTP request.

CVSS3: 9.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-51567

A SQL Injection was found in the /exam/user/profile.php page of kashipara Online Exam System V1.0, which allows remote attackers to execute arbitrary SQL command to get unauthorized database access via the rname, rcollage, rnumber, rgender and rpassword parameters in a POST HTTP request.

CVSS3: 9.1
0%
Низкий
27 дней назад
github логотип
GHSA-xfhq-47hp-mvcx

A SQL Injection was found in the /exam/user/profile.php page of kashipara Online Exam System V1.0, which allows remote attackers to execute arbitrary SQL command to get unauthorized database access via the rname, rcollage, rnumber, rgender and rpassword parameters in a POST HTTP request.

CVSS3: 9.1
0%
Низкий
27 дней назад

Уязвимостей на страницу