An SQL Injection vulnerability exists in Sourcecodester E-Negosyo System 1.0 via the user_email parameter in /admin/login.php.
References
Link | Resource |
---|---|
https://github.com/janikwehrli1/0dayHunt/blob/main/E-Negosyo-System-SQLi.txt | Exploit Third Party Advisory |
https://github.com/nu11secur1ty/CVE-mitre/tree/main/CVE-2021-41674 | Exploit Third Party Advisory |
https://streamable.com/sm0uxf | Exploit Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2021-10-29T15:30:46
Updated: 2021-11-01T21:15:22
Reserved: 2021-09-27T00:00:00
Link: CVE-2021-41674
JSON object: View
NVD Information
Status : Analyzed
Published: 2021-10-29T16:15:07.597
Modified: 2021-11-26T21:07:19.193
Link: CVE-2021-41674
JSON object: View
Redhat Information
No data.
CWE