Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Video Sharing Website Project Subscribe
Filtered by product Video Sharing Website
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-45255 1 Video Sharing Website Project 1 Video Sharing Website 2022-01-04 10.0 HIGH 9.8 CRITICAL
The email parameter from ajax.php of Video Sharing Website 1.0 appears to be vulnerable to SQL injection attacks. A payload injects a SQL sub-query that calls MySQL's load_file function with a UNC file path that references a URL on an external domain. The application interacted with that domain, indicating that the injected SQL query was executed.