CVE-2020-22669

CVE-2020-22669

Modsecurity owasp-modsecurity-crs 3.2.0 (Paranoia level at PL1) has a SQL injection bypass vulnerability. Attackers can use the comment characters and variable assignments in the SQL syntax to bypass Modsecurity WAF protection and implement SQL injection attacks on Web applications.

Source: CVE-2020-22669

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다