2024-05-25 21:48:12 +02:00
### [CVE-2021-21927](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-21927)

2025-09-29 21:09:30 +02:00
%20& color=brightgreen)
& color=brightgreen)
2024-05-25 21:48:12 +02:00
### Description
A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger these vulnerabilities. This can be done as any authenticated user or through cross-site request forgery at ‘ loc_filter’ parameter.
### POC
#### Reference
- https://talosintelligence.com/vulnerability_reports/TALOS-2021-1366
#### Github
No PoCs found on GitHub currently.