An access control issue in Revenue Collection System v1.0 allows unauthenticated attackers to view the contents of /admin/DBbackup/ directory.
References
Link | Resource |
---|---|
https://packetstormsecurity.com/files/169916/Revenue-Collection-System-1.0-SQL-Injection-Remote-Code-Execution.html | Third Party Advisory VDB Entry |
https://packetstormsecurity.com/files/169916/Revenue-Collection-System-1.0-SQL-Injection-Remote-Code-Execution.html | Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
|
History
31 Mar 2025, 17:15
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-522 |
Information
Published : 2023-01-26 23:15
Updated : 2025-03-31 17:15
NVD link : CVE-2022-46967
Mitre link : CVE-2022-46967
CVE.ORG link : CVE-2022-46967
JSON object : View
Products Affected
revenue_collection_system_project
- revenue_collection_system
CWE