CVE-2020-35329: SQL Injection
Published Mar 4, 2021
·Updated
Courier Management System 1.0 1.0 is affected by SQL Injection via 'MULTIPART street '.
Affected Software
1 affected component
Courier Management System Project Courier Management System=1.0
Event History
Mar 4, 2021
CVE Published
via MITRE·03:51 PM
Data Sourced
via MITRE·03:51 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2020-35329?
CVE-2020-35329 has a medium severity rating due to its potential for SQL injection attacks.
2
How do I fix CVE-2020-35329?
To fix CVE-2020-35329, patch the application to sanitize and validate all user inputs, especially in the 'MULTIPART street' field.
3
What kind of attack can be executed using CVE-2020-35329?
CVE-2020-35329 allows for SQL injection attacks that can compromise the database and extract sensitive information.
4
Is the Courier Management System version 1.0 vulnerable to CVE-2020-35329?
Yes, the Courier Management System version 1.0 is explicitly vulnerable to CVE-2020-35329.
5
What steps should be taken after discovering CVE-2020-35329 in my system?
After discovering CVE-2020-35329, immediately apply recommended patches and conduct a security audit to assess any data exposure.