Vulnerabilities
Vulnerable Software
Amodat:  Security Vulnerabilities
Attacker crafts a GET request to: /mobile/downloadfile.aspx? Filename =../.. /windows/boot.ini the LFI is UNAUTHENTICATED.
CVSS Score
5.3
EPSS Score
0.001
Published
2022-06-13
The attacker could get access to the database. The SQL injection is in the username parameter at the login panel: username: admin'--
CVSS Score
5.9
EPSS Score
0.001
Published
2022-06-13
attacker needs to craft a SQL payload. the vulnerable parameter is "agentid" must be authenticated to the admin panel.
CVSS Score
5.9
EPSS Score
0.002
Published
2022-06-13


Contact Us

Shodan ® - All rights reserved