Lucene search

K
prionPRIOn knowledge basePRION:CVE-2020-36112
HistoryJan 04, 2021 - 3:15 p.m.

Sql injection

2021-01-0415:15:00
PRIOn knowledge base
www.prio-n.com

9.7 High

AI Score

Confidence

High

0.405 Medium

EPSS

Percentile

97.3%

CSE Bookstore version 1.0 is vulnerable to time-based blind, boolean-based blind and OR error-based SQL injection in pubid parameter in bookPerPub.php and in cart.php. A successful exploitation of this vulnerability will lead to an attacker dumping the entire database on which the web application is running.

CPENameOperatorVersion
cse_bookstoreeq1.0

9.7 High

AI Score

Confidence

High

0.405 Medium

EPSS

Percentile

97.3%