Vulnerability Description
In SalonERP 3.0.1, a SQL injection vulnerability allows an attacker to inject payload using 'sql' parameter in SQL query while generating a report. Upon successfully discovering the login admin password hash, it can be decrypted to obtain the plain-text password.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Salonerp Project | Salonerp | 3.0.1 |
Related Weaknesses (CWE)
References
- https://salonerp.sourceforge.io/ProductThird Party Advisory
- https://sourceforge.net/projects/salonerp/files/latest/downloadProductThird Party Advisory
- https://www.exploit-db.com/exploits/50659ExploitThird Party AdvisoryVDB Entry
- https://salonerp.sourceforge.io/ProductThird Party Advisory
- https://sourceforge.net/projects/salonerp/files/latest/downloadProductThird Party Advisory
- https://www.exploit-db.com/exploits/50659ExploitThird Party AdvisoryVDB Entry
FAQ
What is CVE-2021-45406?
CVE-2021-45406 is a vulnerability with a CVSS score of 8.8 (HIGH). In SalonERP 3.0.1, a SQL injection vulnerability allows an attacker to inject payload using 'sql' parameter in SQL query while generating a report. Upon successfully discovering the login admin passwo...
How severe is CVE-2021-45406?
CVE-2021-45406 has been rated HIGH with a CVSS base score of 8.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-45406?
Check the references section above for vendor advisories and patch information. Affected products include: Salonerp Project Salonerp.