ZeroHour

CVE-2021-22851

CVSS 3.1
9.8 critical
EPSS
1%p65
Published
()
Modified
Description

HGiga EIP product contains SQL Injection vulnerability. Attackers can inject SQL commands into specific URL parameter (document management page) to obtain database schema and data.

Vendors
hgiga
Products
oaklouds openid
Weakness
CWE-89
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.