NA

CVE-2021-38239

Published: 15/02/2023 Updated: 23/02/2023
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9

Vulnerability Summary

SQL Injection vulnerability in dataease prior to 1.2.0, allows malicious users to gain sensitive information via the orders parameter to /api/sys_msg/list/1/10.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

dataease dataease