Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
REDCap 10.3.4 contains a SQL injection vulnerability in the ToDoList function via sort parameter. The application uses the addition of a string of information from the submitted user that is not validated well in the database query, resulting in an SQL injection vulnerability where an attacker can exploit and compromise all databases.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
REDCap SQL注入漏洞
Vulnerability Description
REDCap是一款数据收集和管理Web应用程序。 REDCap 10.3.4 存在SQL注入漏洞,攻击者可利用该漏洞获取敏感信息。
CVSS Information
N/A
Vulnerability Type
N/A