Lucene search

K
cvelistMitreCVELIST:CVE-2021-43969
HistoryMar 07, 2022 - 8:58 p.m.

CVE-2021-43969

2022-03-0720:58:08
mitre
www.cve.org
4
quicklert
digium
sql injection
out-of-band interaction
dns
time-based
database disclosure
login parameter

AI Score

7.2

Confidence

High

EPSS

0.001

Percentile

32.8%

The login.jsp page of Quicklert for Digium 10.0.0 (1043) is affected by both Blind SQL Injection with Out-of-Band Interaction (DNS) and Blind Time-Based SQL Injections. Exploitation can be used to disclose all data within the database (up to and including the administrative accountsโ€™ login IDs and passwords) via the login.jsp uname parameter.

AI Score

7.2

Confidence

High

EPSS

0.001

Percentile

32.8%

Related for CVELIST:CVE-2021-43969