github.com
https://github.com/nu11secur1ty/CVE-mitre/tree/main/CVE-2021-44655 CVE-2021-44655
CRITICAL
Online Pre-owned/Used Car Showroom Management System 1.0 - SQLi Authentication Bypass
Record summary
CVE-2021-44655 has a selected CVSS score of 9.8 (critical); EIP currently links 1 catalogued exploit.
Description
Online Pre-owned/Used Car Showroom Management System 1.0 contains a SQL injection authentication bypass vulnerability. Admin panel authentication can be bypassed due to SQL injection vulnerability in the login form allowing attacker to get admin access on the application.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBOnline Pre-owned/Used Car Showroom Management System 1.0 - SQLi Authentication BypassExploitDB exploitby Mohamed habib SmidiNot analyzed1 file
References
4nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2021-44655 exploit-db.com
https://www.exploit-db.com/exploits/50560 nu11secur1ty.com
https://www.nu11secur1ty.com/2021/12/cve-2021-44655.html