ZeroHour

CVE-2022-27472

PoC
CVSS 3.1
9.8 critical
EPSS
1%p69
Published
()
Modified
Description

SQL injection vulnerability in Topics Counting feature of Roothub 2.6.0 allows unauthorized attackers to execute arbitrary SQL commands via the "s" parameter remotely.

Vendors
roothub project
Products
roothub
Weakness
CWE-89
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.