CVE-2021-26201
PoC —CVSS 3.1
9.8 critical
EPSS
2%p81
Published
()
Modified
Description
The Login Panel of CASAP Automated Enrollment System 1.0 is vulnerable to SQL injection authentication bypass. An attacker can obtain access to the admin panel by injecting a SQL query in the username field of the login page.
- Vendors
- casap automated enrollment system project
- Products
- casap automated enrollment system
- Weakness
- CWE-89
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.