An access control issue in Revenue Collection System v1.0 allows unauthenticated attackers to view the contents of /admin/DBbackup/ directory.
References
Link | Resource |
---|---|
https://packetstormsecurity.com/files/169916/Revenue-Collection-System-1.0-SQL-Injection-Remote-Code-Execution.html | Third Party Advisory VDB Entry |
https://packetstormsecurity.com/files/169916/Revenue-Collection-System-1.0-SQL-Injection-Remote-Code-Execution.html | Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
|
History
31 Mar 2025, 17:15
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-522 |
21 Nov 2024, 07:31
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
|
References | () https://packetstormsecurity.com/files/169916/Revenue-Collection-System-1.0-SQL-Injection-Remote-Code-Execution.html - Third Party Advisory, VDB Entry |
03 Feb 2023, 14:17
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-01-26 23:15
Updated : 2025-03-31 17:15
NVD link : CVE-2022-46967
Mitre link : CVE-2022-46967
CVE.ORG link : CVE-2022-46967
JSON object : View
Products Affected
revenue_collection_system_project
- revenue_collection_system
CWE