Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-82590
HistoryMar 29, 2022 - 12:00 a.m.

Falcon-plus SQL Injection Vulnerability (CNVD-2022-82590)

2022-03-2900:00:00
China National Vulnerability Database
www.cnvd.org.cn
12
sql injection
falcon-plus
embedded language
vulnerability
cnvd-2022-82590

EPSS

0.002

Percentile

54.5%

Falcon is an embedded programming language. An SQL injection vulnerability exists in Falcon-plus v0.3, which originates from the grpName parameter in /config/service/host.go. An attacker could exploit this vulnerability to cause SQL injection.

EPSS

0.002

Percentile

54.5%

Related for CNVD-2022-82590