SQL Injection vulnerability in parameter "w" in file "druk.php" in MegaBIP software allows unauthorized attacker to disclose the contents of the database and obtain administrator's token to modify the content of pages. This issue affects MegaBIP software versions through 5.13.
Metrics
Affected Vendors & Products
References
History
No history.

Status: PUBLISHED
Assigner: CERT-PL
Published: 2024-07-09T13:30:44.606Z
Updated: 2024-08-01T21:41:03.528Z
Reserved: 2024-07-05T06:15:38.042Z
Link: CVE-2024-6527

Updated: 2024-07-09T14:35:34.403Z

Status : Awaiting Analysis
Published: 2024-07-09T14:15:04.667
Modified: 2024-11-21T09:49:48.593
Link: CVE-2024-6527

No data.