Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
CandidATS version 3.0.0 allows an external attacker to perform CRUD operations on the application databases. This is possible because the application does not correctly validate the entriesPerPage parameter against SQLi attacks.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
CandidATS SQL注入漏洞
Vulnerability Description
CandidATS是印度CandidATS公司的一个免费和开源的招聘人员跟踪系统。 CandidATS 3.0.0版本存在安全漏洞,该漏洞源于应用程序没有针对SQL注入攻击正确验证entriesPerPage参数。
CVSS Information
N/A
Vulnerability Type
N/A