mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-31 18:29:31 +02:00
19 lines
774 B
Markdown
19 lines
774 B
Markdown
### [CVE-2020-29474](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-29474)
|
|

|
|

|
|

|
|
|
|
### Description
|
|
|
|
EGavilan Media EGM Address Book 1.0 contains a SQL injection vulnerability. An attacker can gain Admin Panel access using malicious SQL injection queries to perform remote arbitrary code execution.
|
|
|
|
### POC
|
|
|
|
#### Reference
|
|
- https://systemweakness.com/cve-2020-29474-egavilanmedia-address-book-1-0-exploit-sqli-auth-bypass-228cd4864262
|
|
- https://www.exploit-db.com/exploits/49182
|
|
|
|
#### Github
|
|
No PoCs found on GitHub currently.
|
|
|