Lucene search

K
cvelistMitreCVELIST:CVE-2021-26751
HistoryFeb 12, 2021 - 8:35 p.m.

CVE-2021-26751

2021-02-1220:35:48
mitre
www.cve.org
5
nedi
sql injection
monitoring history
database access

AI Score

9.5

Confidence

High

EPSS

0.001

Percentile

39.3%

NeDi 1.9C allows an authenticated user to perform a SQL Injection in the Monitoring History function on the endpoint /Monitoring-History.php via the det HTTP GET parameter. This allows an attacker to access all the data in the database and obtain access to the NeDi application.

AI Score

9.5

Confidence

High

EPSS

0.001

Percentile

39.3%

Related for CVELIST:CVE-2021-26751