Lucene search

K
cvelistMitreCVELIST:CVE-2021-27124
HistoryFeb 18, 2021 - 3:06 a.m.

CVE-2021-27124

2021-02-1803:06:44
mitre
www.cve.org
6
cve-2021-27124
sql injection
search_result.php
authenticated user
database credentials

AI Score

6.9

Confidence

High

EPSS

0.049

Percentile

92.9%

SQL injection in the expertise parameter in search_result.php in Doctor Appointment System v1.0 allows an authenticated patient user to dump the database credentials via a SQL injection attack.

AI Score

6.9

Confidence

High

EPSS

0.049

Percentile

92.9%

Related for CVELIST:CVE-2021-27124