PoC Index

CVE-2022-40032

CRITICAL 9.8EPSS 20.7%

SQL Injection vulnerability in Simple Task Managing System version 1.0 in login.php in 'username' and 'password' parameters, allows attackers to execute arbitrary code and gain sensitive information.

CVSS v3.1
9.8 CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS v3.1
9.8 CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS
20.69% chance of exploitation in the next 30 days, 97th percentile
Nuclei
critical · CWE-89
Published
2023-02-17
Updated
2025-03-18

Proof-of-concept exploits (1)

Nuclei templates (1)

ExploitDB entries (1)

References

Related