Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Vinicius777

#34463de 53,635
7.5CVSS total
Vulnerabilidades · 1
PT-2015-3664
7.5
2015-01-13
Unknown · Simple E-Document · CVE-2014-10020
**Name of the Vulnerable Software and Affected Versions** Simple e-document version 1.31 **Description** A SQL injection issue allows remote attackers to execute arbitrary SQL commands via the `username` parameter in the login.php file. **Recommendations** For version 1.31, avoid using the `username` parameter in the login.php file until the issue is resolved. Consider temporarily restricting access to the login functionality to minimize the risk of exploitation.