The password parameter on Simple Online Mens Salon...
High severity
Unreviewed
Published
Dec 24, 2021
to the GitHub Advisory Database
•
Updated Feb 11, 2025
Description
Published by the National Vulnerability Database
Dec 23, 2021
Published to the GitHub Advisory Database
Dec 24, 2021
Last updated
Feb 11, 2025
The password parameter on Simple Online Mens Salon Management System (MSMS) 1.0 appears to be vulnerable to SQL injection attacks through the password parameter. The predictive tests of this application interacted with that domain, indicating that the injected SQL query was executed. The attacker can retrieve all authentication and information about the users of this system.
References