ZeroHour

CVE-2020-28994

PoC
CVSS 3.1
9.8 critical
EPSS
1%p69
Published
()
Modified
Description

A SQL injection vulnerability was discovered in Karenderia Multiple Restaurant System, affecting versions 5.4.2 and below. The vulnerability allows for an unauthenticated attacker to perform various tasks such as modifying and leaking all contents of the database.

Vendors
karenderia multiple restaurant system project
Products
karenderia multiple restaurant system
Weakness
CWE-89
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.