ZeroHour

CVE-2021-40247

PoC
CVSS 3.1
9.8 critical
EPSS
3%p84
Published
()
Modified
Description

SQL injection vulnerability in Sourcecodester Budget and Expense Tracker System v1 by oretnom23, allows attackers to execute arbitrary SQL commands via the username field.

Vendors
oretnom23
Products
budget and expense tracker system
Weakness
CWE-89
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.