PT-2022-27227 · Unknown · M0Ver Bible-Online

CVE-2022-4454

·

Published

2022-12-13

·

Updated

2023-09-12

CVSS v3.1

5.5

Medium

VectorAV:A/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions m0ver bible-online (affected versions not specified)
Description A critical issue has been found in the Search Handler component, specifically in the query function of the src/main/java/custom/application/search.java file. This issue leads to sql injection.
Recommendations Apply the patch with the name 6ef0aabfb2d4ccd53fcaa9707781303af357410e to fix this issue. As a temporary workaround, consider disabling the query function of the Search Handler component until the patch is applied.

Exploit

Fix

Improper Neutralization

SQL injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2022-4454

Affected Products

M0Ver Bible-Online