VYPR
Unrated severityNVD Advisory· Published May 24, 2022· Updated Apr 15, 2025

Home Clean Services Management System login.php sql injection

CVE-2022-1839

Description

A vulnerability classified as critical was found in Home Clean Services Management System 1.0. This vulnerability affects the file login.php. The manipulation of the argument email with the input admin%'//AND//(SELECT//5383//FROM//(SELECT(SLEEP(2)))JPeh)//AND/**/'frfq%'='frfq leads to sql injection. The attack can be initiated remotely but it requires authentication. Exploit details have been disclosed to the public.

Affected products

2

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.