Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-88267
HistorySep 28, 2022 - 12:00 a.m.

Wedding Planner feature_edit.php SQL Injection Vulnerability

2022-09-2800:00:00
China National Vulnerability Database
www.cnvd.org.cn
10
wedding planner
sql injection
feature_edit.php
vulnerability
database information

EPSS

0.001

Percentile

37.7%

Wedding Planner is a wedding planner project by pushpam abhishek. Designed to provide users with an easy way to plan their wedding through a web application while using real data, Wedding Planner v1.0 is vulnerable to a SQL injection vulnerability that stems from a missing validation of externally entered SQL statements in the id parameter in /admin/feature_edit.php. An attacker could exploit the vulnerability to obtain sensitive database information.

EPSS

0.001

Percentile

37.7%

Related for CNVD-2022-88267