CVE-2022-36193
CVE-2022-36193
Vexday Risk Score
48Attention
SSVC decision (CISA)
Attend
PoC available → attend closely
CVSS 9.8EPSS 1.4%KEV nãoPoC públicaNuclei —Metasploit —Patch —
Lifecycle
28 Nov 2022Published on NVD
21 Mar 2023Public PoC
Recommendation: Plan a near-term fix — a public PoC already exists.
SQL injection in School Management System 1.0 allows remote attackers to modify or delete data, causing persistent changes to the application's content or behavior by using malicious SQL queries.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected products
n/a · n/apublic PoCs found — 1
githubgithub.com/G37SYS73M/CVE-2022-36193★ 0⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →