ZeroHour

CVE-2017-11678

PoC
CVSS 3.0
8.8 high
EPSS
2%p76
Published
()
Modified
Description

SQL injection vulnerability in Hashtopus 1.5g allows remote authenticated users to execute arbitrary SQL commands via the format parameter in admin.php.

Vendors
hashtopus project
Products
hashtopus
Weakness
CWE-89
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.