ZeroHour

CVE-2021-27315

PoC
CVSS 3.1
7.5 high
EPSS
8%p94
Published
()
Modified
Description

Blind SQL injection in contactus.php in Doctor Appointment System 1.0 allows an unauthenticated attacker to insert malicious SQL queries via the comment parameter.

Vendors
doctor appointment system project
Products
doctor appointment system
Weakness
CWE-89
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.