Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-55170
HistoryJul 01, 2021 - 12:00 a.m.

Zhongbang CRMEB SQL Injection Vulnerability

2021-07-0100:00:00
China National Vulnerability Database
www.cnvd.org.cn
16
zhongbang crmeb
e-commerce
sql injection
systemdatabackup.php
china xi'an zhongbang network
v2.60
v3.1

EPSS

0.001

Percentile

36.6%

Zhongbang CRMEB is an open source e-commerce management system of China Xiโ€™an Zhongbang Network (Zhongbang) Company. Zhongbang CRMEB Mall System There is a SQL injection vulnerability in Zhongbang CRMEB Mall System V2.60 and V3.1 via the SQL injection vulnerability in the tablename parameter in SystemDatabackup.php. An attacker can use this vulnerability to execute illegal SQL commands.

EPSS

0.001

Percentile

36.6%

Related for CNVD-2021-55170