Vulnerability Description
The Login Panel of CASAP Automated Enrollment System 1.0 is vulnerable to SQL injection authentication bypass. An attacker can obtain access to the admin panel by injecting a SQL query in the username field of the login page.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Casap Automated Enrollment System Project | Casap Automated Enrollment System | 1.0 |
Related Weaknesses (CWE)
References
- https://www.exploit-db.com/exploits/49463ExploitThird Party AdvisoryVDB Entry
- https://www.exploit-db.com/exploits/49463ExploitThird Party AdvisoryVDB Entry
FAQ
What is CVE-2021-26201?
CVE-2021-26201 is a vulnerability with a CVSS score of 9.8 (CRITICAL). The Login Panel of CASAP Automated Enrollment System 1.0 is vulnerable to SQL injection authentication bypass. An attacker can obtain access to the admin panel by injecting a SQL query in the username...
How severe is CVE-2021-26201?
CVE-2021-26201 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2021-26201?
Check the references section above for vendor advisories and patch information. Affected products include: Casap Automated Enrollment System Project Casap Automated Enrollment System.