The Le-yan dental management system contains an SQL-injection vulnerability. An unauthenticated remote attacker can inject SQL commands into the input field of the login page to acquire administrator’s privilege and perform arbitrary operations on the system or disrupt service.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-27209 | The Le-yan dental management system contains an SQL-injection vulnerability. An unauthenticated remote attacker can inject SQL commands into the input field of the login page to acquire administrator’s privilege and perform arbitrary operations on the system or disrupt service. |
Fixes
Solution
Contact tech support from Le-yan Co., Ltd.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://www.twcert.org.tw/tw/cp-132-5509-80f05-1.html |
|
History
No history.
Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2024-09-17T03:07:31.585Z
Reserved: 2021-12-21T00:00:00
Link: CVE-2022-22055
No data.
Status : Modified
Published: 2022-01-14T05:15:11.257
Modified: 2024-11-21T06:45:59.920
Link: CVE-2022-22055
No data.
OpenCVE Enrichment
No data.
EUVD