{"_links":{"capec":{"href":"/api/v1/vulnerability/cve-2020-36112/capec"},"cvss":{"href":"/api/v1/vulnerability/cve-2020-36112/cvss"},"cwe":{"href":"/api/v1/vulnerability/cve-2020-36112/cwe"},"enrichment":{"href":"/api/v1/vulnerability/cve-2020-36112/enrichment"},"gcve":{"href":"/api/v1/vulnerability/cve-2020-36112/gcve"},"self":{"href":"/api/v1/vulnerability/cve-2020-36112"},"sightings":{"href":"/api/v1/sightings/cve-2020-36112"}},"data":{"nuclei":true,"nuclei_template":"http/cves/2020/CVE-2020-36112.yaml","nuclei_template_severity":"critical","nuclei_template_yaml":"id: CVE-2020-36112\n\ninfo:\n  name: CSE Bookstore 1.0 - SQL Injection\n  author: geeknik\n  severity: critical\n  description: CSE Bookstore version 1.0 is vulnerable to time-based blind, boolean-based blind and OR error-based SQL injection in pubid parameter in bookPerPub.php. A successful exploitation of this vulnerability will lead to an attacker dumping the entire database.\n  impact: |\n    Unauthenticated attackers can execute SQL injection to dump the entire database including sensitive student and administrative data.\n  remediation: |\n    Upgrade to the latest version to mitigate this vulnerability.\n  reference:\n    - https://www.exploit-db.com/exploits/49314\n    - https://www.tenable.com/cve/CVE-2020-36112\n    - https://nvd.nist.gov/vuln/detail/CVE-2020-36112\n    - https://github.com/StarCrossPortal/scalpel\n    - https://github.com/anonymous364872/Rapier_Tool\n  classification:\n    cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H\n    cvss-score: 9.8\n    cve-id: CVE-2020-36112\n    cwe-id: CWE-89\n    epss-score: 0.18052\n    epss-percentile: 0.97065\n    cpe: cpe:2.3:a:cse_bookstore_project:cse_bookstore:1.0:*:*:*:*:*:*:*\n  metadata:\n    max-request: 1\n    vendor: cse_bookstore_project\n    product: cse_bookstore\n  tags: cve,cve2020,sqli,cse,edb,tenable,cse_bookstore_project,vkev,vuln\n\nhttp:\n  - raw:\n      - |\n        GET /ebook/bookPerPub.php?pubid=4' HTTP/1.1\n        Host: {{Hostname}}\n\n    matchers:\n      - type: word\n        part: body\n        words:\n          - \"get book price failed! You have an error in your SQL syntax\"\n          - \"Can't retrieve data You have an error in your SQL syntax\"\n        condition: or\n# digest: 4a0a00473045022100e9a43a251f59d7795fcebff711ff5c201c68e75808859e70c15dedc29657750702205ed7ddd804eb7b5793b85cf112b359bcb27243f9494407ed8132b52caa04a144:922c64590222798bb761d5b6d8e72950"},"source":"nuclei","vuln_id":"cve-2020-36112"}