Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Siempelkamp: SQL injection due to improper handling of HTTP request input data
Vulnerability Description
A low privileged remote attacker can insert a SQL injection in the web application due to improper handling of HTTP request input data which allows to exfiltrate all data.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Vulnerability Type
SQL命令中使用的特殊元素转义处理不恰当(SQL注入)
Vulnerability Title
Siempelkamp NIS UmweltOffice SQL注入漏洞
Vulnerability Description
Siempelkamp NIS UmweltOffice是Siempelkamp NIS公司的一个环境数据管理系统。 Siempelkamp NIS UmweltOffice 7.4.3之前版本存在SQL注入漏洞,该漏洞源于HTTP请求输入数据处理不当,低权限远程攻击者可以在Web应用程序中插入SQL注入,从而泄露所有数据。
CVSS Information
N/A
Vulnerability Type
N/A