ZeroHour

CVE-2022-29006

PoC ×2
CVSS 3.1
9.8 critical
EPSS
19%p97
Published
()
Modified
Description

Multiple SQL injection vulnerabilities via the username and password parameters in the Admin panel of Directory Management System v1.0 allows attackers to bypass authentication.

Vendors
phpgurukul
Products
directory management system
Weakness
CWE-89
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.