Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-57775
HistoryMay 16, 2022 - 12:00 a.m.

Simple Client Management System SQL注入漏洞(CNVD-2022-57775)

2022-05-1600:00:00
China National Vulnerability Database
www.cnvd.org.cn
15

0.002 Low

EPSS

Percentile

54.5%

Simple Client Management System is a simple client management system from Carlo Montero’s personal developer. version 1.0 of Simple Client Management System is vulnerable to SQL injection, which originates from a vulnerability in /cms/classes/Master. php?f=delete_invoice, the id parameter of the post request lacks validation for external input SQL statements, which can be exploited to execute illegal SQL commands to steal sensitive database data.

0.002 Low

EPSS

Percentile

54.5%

Related for CNVD-2022-57775