nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2021-27828 CVE-2021-27828
CRITICAL
In4Suit ERP 3.2.74.1370 - 'txtLoginId' SQL injection
Record summary
CVE-2021-27828 has a selected CVSS score of 9.1 (critical); EIP currently links 1 catalogued exploit.
Description
SQL injection in In4Suite ERP 3.2.74.1370 allows attackers to modify or delete data, causing persistent changes to the application's content or behavior by using malicious SQL queries.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBIn4Suit ERP 3.2.74.1370 - 'txtLoginId' SQL injectionExploitDB exploitby Gulab MondalNot analyzed1 file
References
3exploit-db.com
https://www.exploit-db.com/exploits/49884 in4velocity.com
https://www.in4velocity.com/in4suite-erp.html