CVE-2021-22856

The CGE property management system contains SQL Injection vulnerabilities. Remote attackers can inject SQL commands into the parameters in Cookie and obtain data in the database without privilege.
Configurations

Configuration 1 (hide)

cpe:2.3:a:changjia_property_management_system_project:changjia_property_management_system:1.00:*:*:*:*:*:*:*

History

No history.

Information

Published : 2021-02-17 11:15

Updated : 2024-11-21 05:50


NVD link : CVE-2021-22856

Mitre link : CVE-2021-22856

CVE.ORG link : CVE-2021-22856


JSON object : View

Products Affected

changjia_property_management_system_project

  • changjia_property_management_system
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')