mirror of
https://github.com/0xMarcio/cve.git
synced 2025-05-31 10:40:54 +00:00
743 B
743 B
CVE-2022-36257
Description
A SQL injection vulnerability in UserDAO.java in sazanrjb InventoryManagementSystem 1.0 allows attackers to execute arbitrary SQL commands via the parameters such as "users", "pass", etc.
POC
Reference
- https://gist.github.com/ziyishen97/ff3816032a76796f45368ed243ab3343
- https://github.com/sazanrjb/InventoryManagementSystem/issues/14
Github
No PoCs found on GitHub currently.