PoC Index

CVE-2019-19016

HIGH 7.5EPSS 1.2%

An issue was discovered in TitanHQ WebTitan before 5.18. Some functions, such as /history-x.php, of the administration interface are vulnerable to SQL Injection through the results parameter. This could be used by an attacker to extract sensitive information from the appliance database.

CVSS v3.1
7.5 HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CVSS v2.0
5.0 MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
EPSS
1.20% chance of exploitation in the next 30 days, 66th percentile
Published
2019-12-02
Updated
2024-08-05

Proof-of-concept exploits (1)

References

Related