CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.8. Exploitation may require the attacker to be authenticated.
CVE
CVE-2022-25222
Severity
CRITICAL
CVSS
9.8
EPSS
1.62%
Original NVD Description
Money Transfer Management System Version 1.0 allows an unauthenticated user to inject SQL queries in 'admin/maintenance/manage_branch.php' and 'admin/maintenance/manage_fee.php' via the 'id' parameter.
Related CVEs
Other vulnerabilities affecting the same vendor(s)