GUnet OpenEclass是希腊GUnet公司的一个学习管理系统。 GUnet OpenEclass 1.7.3版本存在SQL注入漏洞,该漏洞源于议程模块等端点存在多个SQL注入点,可能导致经过身份验证的攻击者操纵数据库查询。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Openeclass | GUnet OpenEclass | 1.7.3 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2020-37116 | 8.8 HIGH | GUnet OpenEclass 1.7.3 E-learning platform - phpMyAdmin Remote Access |
| CVE-2020-37113 | 8.8 HIGH | GUnet OpenEclass 1.7.3 E-learning platform - File Upload Extension Bypass |
| CVE-2020-37115 | 6.5 MEDIUM | GUnet OpenEclass 1.7.3 E-learning platform - Plaintext Password Storage |
| CVE-2020-37114 | 4.3 MEDIUM | GUnet OpenEclass 1.7.3 E-learning platform - Information Disclosure |
No comments yet