SQL Injection in GitHub repository unilogies/bumsys prior to 2.2.0.
References
| Link | Resource |
|---|---|
| https://huntr.dev/bounties/37b80402-0edf-4f26-a668-b6f8b48dcdfb | Exploit Patch Third Party Advisory |
| https://github.com/unilogies/bumsys/commit/1b426f58a513194206d0ea8ab58baf1461e54978 | Patch |
Configurations
History
26 May 2023, 13:54
| Type | Values Removed | Values Added |
|---|---|---|
| References | (MISC) https://huntr.dev/bounties/37b80402-0edf-4f26-a668-b6f8b48dcdfb - Exploit, Patch, Third Party Advisory | |
| References | (MISC) https://github.com/unilogies/bumsys/commit/1b426f58a513194206d0ea8ab58baf1461e54978 - Patch | |
| CPE | cpe:2.3:a:bumsys_project:bumsys:*:*:*:*:*:*:*:* | |
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.2 |
| First Time |
Bumsys Project bumsys
Bumsys Project |
22 May 2023, 11:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2023-05-22 11:15
Updated : 2023-05-26 13:54
NVD link : CVE-2023-2832
Mitre link : CVE-2023-2832
JSON object : View
Products Affected
bumsys_project
- bumsys
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
