Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-79901
HistoryApr 19, 2022 - 12:00 a.m.

Wecul Nyron SQL Injection Vulnerability

2022-04-1900:00:00
China National Vulnerability Database
www.cnvd.org.cn
6

0.003 Low

EPSS

Percentile

65.5%

A SQL injection vulnerability exists in Wecul Nyron version 1.0, which stems from a lack of validation of externally entered SQL statements in thes1 parameter of Nyron/Library/Catalog/winlibsrch.aspx. validation of external input SQL statements. An attacker could use this vulnerability to execute illegal SQL commands to steal sensitive database data.

CPENameOperatorVersion
wecul nyroneq1.0

0.003 Low

EPSS

Percentile

65.5%

Related for CNVD-2022-79901