Lucene search

K
nvd[email protected]NVD:CVE-2022-46072
HistoryDec 14, 2022 - 6:15 p.m.

CVE-2022-46072

2022-12-1418:15:22
CWE-89
web.nvd.nist.gov
2
helmet store showroom
v1.0
unauthenticated
sql injection
vulnerability

CVSS3

9.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

EPSS

0.002

Percentile

59.5%

Helmet Store Showroom v1.0 vulnerable to unauthenticated SQL Injection.

Affected configurations

Nvd
Node
helmet_store_showroom_projecthelmet_store_showroomMatch1.0
VendorProductVersionCPE
helmet_store_showroom_projecthelmet_store_showroom1.0cpe:2.3:a:helmet_store_showroom_project:helmet_store_showroom:1.0:*:*:*:*:*:*:*

CVSS3

9.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

EPSS

0.002

Percentile

59.5%

Related for NVD:CVE-2022-46072