SQL Injection Vulnerability in Webgalamb by Webgalamb
CVE-2018-19510
9.8CRITICAL
What is CVE-2018-19510?
The Webgalamb application is vulnerable to SQL injection through the Client-IP HTTP request header in the subscriber.php file. This vulnerability allows an attacker to manipulate SQL queries, potentially leading to unauthorized access to sensitive information within the database. It is crucial for users of Webgalamb to apply security measures and updates to patch this vulnerability and protect their systems from exploitation.
References
EPSS Score
19% chance of being exploited in the next 30 days.
CVSS V3.1
Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
