← volver
CVE-2022-3130

codeprojects Online Driving School login.php sql injection

CVSS 7.3 HIGHEPSS 0.8%CWE-89
Vexday Risk Score
21Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS 7.3EPSS 0.8%KEV nãoPoC Nuclei Metasploit Patch
Ciclo de vida
07 sep 2022Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
A vulnerability classified as critical has been found in codeprojects Online Driving School. This affects an unknown part of the file /login.php. The manipulation of the argument username leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-207873 was assigned to this vulnerability.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L