romzes13/WorkOrderCMS

romzes13/WorkOrderCMS

Releases1
Frequency
Last Release
Stars12
The WorkOrder Content Managment System (CMS) is designed to manage and dispatch work orders.

CVE History

CVEPublishedCVSS v3CVSS v2
8.2 HIGH

WorkOrder CMS 0.1.0 contains a SQL injection vulnerability that allows unauthenticated attackers to bypass login by manipulating username and password parameters. Attackers can inject malicious SQL queries using techniques like OR '1'='1' and stacked queries to access database information or execute administrative commands.