Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2022-40347
SQL Injection vulnerability in Intern Record System version 1.0 in /intern/controller.php in 'phone', 'email', 'deptType' and 'name' parameters, allows attackers to execute arbitrary code and gain sensitive information.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.017
EPSS Ranking
81.6%
CVSS Severity
CVSS v3 Score
9.8
References
http://packetstormsecurity.com/files/171740/Intern-Record-System-1.0-SQL-Injection.html
https://code-projects.org/intern-record-system-in-php-with-source-code/
https://download-media.code-projects.org/2020/03/Intern_Record_System_In_PHP_With_Source_Code.zip
https://github.com/h4md153v63n/CVE-2022-40347_Intern-Record-System-phone-V1.0-SQL-Injection-Vulnerability-Unauthenticated
http://packetstormsecurity.com/files/171740/Intern-Record-System-1.0-SQL-Injection.html
https://code-projects.org/intern-record-system-in-php-with-source-code/
https://download-media.code-projects.org/2020/03/Intern_Record_System_In_PHP_With_Source_Code.zip
https://github.com/h4md153v63n/CVE-2022-40347_Intern-Record-System-phone-V1.0-SQL-Injection-Vulnerability-Unauthenticated
Products affected by CVE-2022-40347
Intern Record System Project
»
Intern Record System
»
Version:
1.0
cpe:2.3:a:intern_record_system_project:intern_record_system:1.0
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved