cve/2022/CVE-2022-47072.md
2024-06-09 00:33:16 +00:00

20 lines
816 B
Markdown

### [CVE-2022-47072](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-47072)
![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen)
### Description
SQL injection vulnerability in Enterprise Architect 16.0.1605 32-bit allows attackers to run arbitrary SQL commands via the Find parameter in the Select Classifier dialog box..
### POC
#### Reference
- https://github.com/DojoSecurity/Enterprise-Architect-SQL-Injection
- https://github.com/DojoSecurity/Enterprise-Architect-SQL-Injection
#### Github
- https://github.com/DojoSecurity/DojoSecurity
- https://github.com/DojoSecurity/Enterprise-Architect-SQL-Injection