CVE-2021-30175

ZEROF Web Server 1.0 (April 2021) allows SQL Injection via the /HandleEvent endpoint for the login page.
Configurations

Configuration 1 (hide)

cpe:2.3:a:zerof:web_server:1.0:*:*:*:*:*:*:*

History

21 Nov 2024, 06:03

Type Values Removed Values Added
References () https://github.com/awillix/research/blob/main/cve/CVE-2021-30175.md - Third Party Advisory () https://github.com/awillix/research/blob/main/cve/CVE-2021-30175.md - Third Party Advisory
References () https://pro.zerof.ru - Product () https://pro.zerof.ru - Product

Information

Published : 2021-04-13 14:15

Updated : 2024-11-21 06:03


NVD link : CVE-2021-30175

Mitre link : CVE-2021-30175

CVE.ORG link : CVE-2021-30175


JSON object : View

Products Affected

zerof

  • web_server
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')