CVE-2020-28073
CRITICAL WAF: High
CVSS 9.8
Published: 2020-12-23
CWE-89
SourceCodester Library Management System 1.0 is affected by SQL Injection allowing an attacker to bypass the user authentication and impersonate any user on the system.
WAF Coverage Analysis
SQL Injection
High WAF Coverage
OWASP: A03:2021 Injection
942xxx - SQL Injection
Affected Software
| Vendor | Product | Version |
|---|---|---|
| library_management_system_project | library_management_system | 1.0 |
References
- packetstormsecurity.com (Exploit, Third Party Advisory, VDB Entry)
- www.sourcecodester.com (Product, Third Party Advisory)