Lucene search

K
osvGoogleOSV:CVE-2020-24913
HistoryMar 04, 2021 - 1:15 p.m.

CVE-2020-24913

2021-03-0413:15:15
Google
osv.dev
10
sql injection
qcubed
profile.php
unauthenticated attacker
database
post request

AI Score

7.9

Confidence

Low

EPSS

0.002

Percentile

65.0%

A SQL injection vulnerability in qcubed (all versions including 3.1.1) in profile.php via the strQuery parameter allows an unauthenticated attacker to access the database by injecting SQL code via a crafted POST request.

AI Score

7.9

Confidence

Low

EPSS

0.002

Percentile

65.0%