mirror of
https://github.com/0xMarcio/cve.git
synced 2025-05-07 11:06:19 +00:00
909 B
909 B
CVE-2019-5722
Description
An issue was discovered in portier vision 4.4.4.2 and 4.4.4.6. Due to a lack of user input validation in parameter handling, it has various SQL injections, including on the login form, and on the search form for a key ring number.
POC
Reference
- http://packetstormsecurity.com/files/151117/PORTIER-4.4.4.2-4.4.4.6-SQL-Injection.html
- https://seclists.org/bugtraq/2019/Jan/7
- https://www.exploit-db.com/exploits/46163/
- https://www.syss.de/fileadmin/dokumente/Publikationen/Advisories/SYSS-2018-012.txt
Github
No PoCs found on GitHub currently.