Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-58094
HistoryMay 17, 2022 - 12:00 a.m.

Air Cargo Management System SQL Injection Vulnerability (CNVD-2022-58094)

2022-05-1700:00:00
China National Vulnerability Database
www.cnvd.org.cn
9
air cargo management
sql injection
vulnerability
lack of filtering
escaping
sensitive data
database
cnvd

EPSS

0.001

Percentile

37.7%

Air Cargo Management System is an air cargo management system. version 1.0 of Air Cargo Management System is vulnerable to SQL injection, which originates from /acms/admin/?page=transactions/manage_transaction& id=Lack of filtering and escaping for parameters, an attacker can use this vulnerability to execute illegal SQL commands to steal sensitive data from the database.

EPSS

0.001

Percentile

37.7%

Related for CNVD-2022-58094