CVE-2021-44098

Severity CVSS v4.0:
Pending analysis
Type:
CWE-89 SQL Injection
Publication date:
02/06/2022
Last modified:
07/11/2023

Description

EGavilan Media Expense-Management-System 1.0 is vulnerable to SQL Injection via /expense_action.php. This allows a remote attacker to compromise Application SQL database.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:egavilanmedia:expense_management_system:1.0:*:*:*:*:*:*:*