CVE-2021-40644: SQL Injection
Published Mar 30, 2022
·Updated
An SQL Injection vulnerability exists in oasys oasystem as of 9/7/2021 in resources/mappers/notice-mapper.xml.
Affected Software
1 affected component
Oasys Project Oasys=2021-09-07
Event History
Mar 30, 2022
CVE Published
via MITRE·08:44 PM
Data Sourced
via MITRE·08:44 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this SQL Injection vulnerability?
The vulnerability ID for this SQL Injection vulnerability is CVE-2021-40644.
2
What is the severity rating of CVE-2021-40644?
The severity rating of CVE-2021-40644 is medium (6.5).
3
Which software is affected by CVE-2021-40644?
The software affected by CVE-2021-40644 is Oasys Project Oasys version 2021-09-07.
4
How can I fix the SQL Injection vulnerability in Oasys Project Oasys?
To fix the SQL Injection vulnerability in Oasys Project Oasys, you should update to a version that is not affected.
5
Where can I find more information about CVE-2021-40644?
You can find more information about CVE-2021-40644 at the following references: [link1](https://gitee.com/aaluoxiang/oa_system), [link2](https://github.com/novysodope/VulReq/blob/main/oa_system).