Description
A SQL Injection vulnerability exists in openSIS 8.0 when MySQL (MariaDB) is being used as the application database. A malicious attacker can issue SQL commands to the MySQL (MariaDB) database through the index.php username parameter.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-25737 | A SQL Injection vulnerability exists in openSIS 8.0 when MySQL (MariaDB) is being used as the application database. A malicious attacker can issue SQL commands to the MySQL (MariaDB) database through the index.php username parameter. |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T02:06:42.506Z
Reserved: 2021-08-23T00:00:00.000Z
Link: CVE-2021-39377
No data.
Status : Modified
Published: 2021-09-01T13:15:08.460
Modified: 2024-11-21T06:19:27.010
Link: CVE-2021-39377
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD