CVE-2020-29474

CRITICAL WAF: High
CVSS 9.8 Published: 2020-12-24
CWE-89

EGavilan Media EGM Address Book 1.0 contains a SQL injection vulnerability. An attacker can gain Admin Panel access using malicious SQL injection queries to perform remote arbitrary code execution.

WAF Coverage Analysis

SQL Injection High WAF Coverage

OWASP: A03:2021 Injection

942xxx - SQL Injection

Affected Software

VendorProductVersion
egavilanmediaegm_address_book1.0

References

Back to CVE Database