Agentejo Cockpit before 0.11.2 allows NoSQL injection via the Controller/Auth.php resetpassword function.
References
Configurations
History
No history.
Information
Published : 2020-12-30 01:15
Updated : 2024-11-21 05:28
NVD link : CVE-2020-35847
Mitre link : CVE-2020-35847
CVE.ORG link : CVE-2020-35847
JSON object : View
Products Affected
agentejo
- cockpit
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')