SQL Injection in the login page in Online Bus Ticket Reservation 1.0 allows attackers to execute arbitrary SQL commands and bypass authentication via the username and password fields.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-23054 | SQL Injection in the login page in Online Bus Ticket Reservation 1.0 allows attackers to execute arbitrary SQL commands and bypass authentication via the username and password fields. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://www.exploit-db.com/exploits/49212 |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T17:02:08.068Z
Reserved: 2020-12-14T00:00:00
Link: CVE-2020-35378
No data.
Status : Modified
Published: 2020-12-14T16:15:11.963
Modified: 2024-11-21T05:27:14.470
Link: CVE-2020-35378
No data.
OpenCVE Enrichment
No data.
EUVD