vendor:
Not specified
by:
Gamoscu
7.5
CVSS
HIGH
SQL Injection
89
CWE
Product Name: Not specified
Affected Version From: Not specified
Affected Version To: Not specified
Patch Exists: NO
Related CWE: Not specified
CPE: Not specified
Platforms Tested: Not specified
Not specified
weenCompany SQL Injection Vulnerability
The vulnerability allows an attacker to execute arbitrary SQL queries in the weenCompany website's index.php moduleid parameter, leading to unauthorized access or manipulation of the database.
Mitigation:
To mitigate the vulnerability, the vendor should implement proper input validation and parameterized queries to prevent SQL injection attacks.