cve/2022/CVE-2022-35598.md
2024-06-18 02:51:15 +02:00

661 B

CVE-2022-35598

Description

A SQL injection vulnerability in ConnectionFactoryDAO.java in sazanrjb InventoryManagementSystem 1.0 allows attackers to execute arbitrary SQL commands via parameter username.

POC

Reference

Github

No PoCs found on GitHub currently.