ZeroHour

CVE-2020-10582

PoC
CVSS 3.1
9.8 critical
EPSS
2%p74
Published
()
Modified
Description

A SQL injection on the /admin/display_errors.php script of Invigo Automatic Device Management (ADM) through 5.0 allows remote attackers to execute arbitrary SQL requests (including data reading and modification) on the database.

Vendors
invigo
Products
automatic device management
Weakness
CWE-89
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.