Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-68943
HistoryJun 08, 2022 - 12:00 a.m.

Afian Filerun SQL Injection Vulnerability (CNVD-2022-68943)

2022-06-0800:00:00
China National Vulnerability Database
www.cnvd.org.cn
9
afian filerun
sql injection
version 20220202
post parameter
exploit vulnerability
web-based file manager

EPSS

0.001

Percentile

33.2%

Afian FileRun is a full-featured web-based file manager. sql injection vulnerability exists in Afian Filerun version 20220202, which stems from a lack of cleanup of the POST parameter metadata[] in the /?module=fileman§ion=get&page=grid page. An attacker could exploit this vulnerability to cause SQL injection.

EPSS

0.001

Percentile

33.2%

Related for CNVD-2022-68943