vendor:
MLM
by:
SwT Labs
7,8
CVSS
HIGH
SQL Injection
89
CWE
Product Name: MLM
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: YES
Related CWE: CVE-2020-1234
CPE: N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: None
2020
Script url: http://www.2daybiz.com/MLM.html
This vulnerability allows an attacker to inject malicious SQL queries into the vulnerable web application. The attacker can use this vulnerability to gain access to the database and modify, delete or extract data from the database.
Mitigation:
The best way to mitigate this vulnerability is to use parameterized queries and input validation.