An access control issue in Revenue Collection System v1.0 allows unauthenticated attackers to view the contents of /admin/DBbackup/ directory.
References
Link | Resource |
---|---|
https://packetstormsecurity.com/files/169916/Revenue-Collection-System-1.0-SQL-Injection-Remote-Code-Execution.html | Third Party Advisory VDB Entry |
https://packetstormsecurity.com/files/169916/Revenue-Collection-System-1.0-SQL-Injection-Remote-Code-Execution.html | Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 07:31
Type | Values Removed | Values Added |
---|---|---|
References | () https://packetstormsecurity.com/files/169916/Revenue-Collection-System-1.0-SQL-Injection-Remote-Code-Execution.html - Third Party Advisory, VDB Entry |
Information
Published : 2023-01-26 23:15
Updated : 2024-11-21 07:31
NVD link : CVE-2022-46967
Mitre link : CVE-2022-46967
CVE.ORG link : CVE-2022-46967
JSON object : View
Products Affected
revenue_collection_system_project
- revenue_collection_system
CWE