ZeroHour

CVE-2021-22856

CVSS 3.1
7.5 high
EPSS
1%p72
Published
()
Modified
Description

The CGE property management system contains SQL Injection vulnerabilities. Remote attackers can inject SQL commands into the parameters in Cookie and obtain data in the database without privilege.

Vendors
changjia property management system project
Products
changjia property management system
Weakness
CWE-89
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.