CVE-2022-31974: SQL Injection
Published Jun 1, 2022
·Updated
Online Fire Reporting System v1.0 is vulnerable to SQL Injection via /ofrs/admin/?page=reports&date=.
Affected Software
1 affected component
Online Fire Reporting System Project Online Fire Reporting System=1.0
Event History
Jun 1, 2022
CVE Published
via MITRE·06:21 PM
Data Sourced
via MITRE·06:21 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2022-31974.
2
What is the affected software for this vulnerability?
The affected software for this vulnerability is Online Fire Reporting System v1.0.
3
What is the severity rating of CVE-2022-31974?
CVE-2022-31974 has a severity rating of 7.2 (high).
4
How can an attacker exploit this vulnerability?
An attacker can exploit this vulnerability by injecting SQL commands through the /ofrs/admin/?page=reports&date= parameter.
5
Is there a fix available for CVE-2022-31974?
There is no specific fix mentioned in the provided reference link for CVE-2022-31974. It is recommended to contact the software vendor for a patch or update.