ZeroHour

CVE-2021-26201

PoC
CVSS 3.1
9.8 critical
EPSS
2%p81
Published
()
Modified
Description

The Login Panel of CASAP Automated Enrollment System 1.0 is vulnerable to SQL injection authentication bypass. An attacker can obtain access to the admin panel by injecting a SQL query in the username field of the login page.

Vendors
casap automated enrollment system project
Products
casap automated enrollment system
Weakness
CWE-89
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.