CVE-2020-35378
PoC —CVSS 3.1
9.8 critical
EPSS
2%p80
Published
()
Modified
Description
SQL Injection in the login page in Online Bus Ticket Reservation 1.0 allows attackers to execute arbitrary SQL commands and bypass authentication via the username and password fields.
- Vendors
- online bus ticket reservation project
- Products
- online bus ticket reservation
- Weakness
- CWE-89
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.