AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2022-3059

HIGH · CVSS 8.6 EPSS 0.46%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2022-10-31 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2022-3059
Severity
HIGH
CVSS
8.6
EPSS
0.46%

Original NVD Description

The application was vulnerable to multiple instances of SQL injection (authenticated and unauthenticated) through a vulnerable parameter. Due to the stacked query support, complex SQL commands could be crafted and injected into the vulnerable parameter and using a sleep based inferential SQL injection it was possible to extract data from the database.

Related CVEs

Other vulnerabilities affecting the same vendor(s)