Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-35521
HistoryApr 24, 2022 - 12:00 a.m.

Sourcecodester Baby Care System SQL注入漏洞(CNVD-2022-35521)

2022-04-2400:00:00
China National Vulnerability Database
www.cnvd.org.cn
12
sourcecodester community
baby care system
sql injection

EPSS

0.002

Percentile

54.5%

Sourcecodester Baby Care System is an application of the Sourcecodester community in the United States. Sourcecodester Baby Care System v1.0 contains a SQL injection vulnerability that originates in /admin/uesrs.php & action=type & userrole=Admin & userid= where the userid parameter lacks validation for external input. SQL statement validation, an attacker can use the vulnerability to execute illegal SQL commands to steal sensitive data from the database.

EPSS

0.002

Percentile

54.5%

Related for CNVD-2022-35521