🔙 목록으로 돌아가기

CVE-2021-42258: BillQuick Web Suite SQL Injection

TitleBillQuick Web Suite SQL Injection
Authordwisiswant0
SeverityCritical
ImpactSuccessful exploitation of this vulnerability can lead to unauthorized access, data leakage, and potential compromise of the entire system.
RemediationApply the latest security patches and updates provided by the vendor to fix the SQL Injection vulnerability in the BillQuick Web Suite.
CVSS Score9.8
EPSS Score0.93664
CVE IDCVE-2021-42258
CWE IDCWE-89
Tags cve2021 cve sqli billquick kev bqe vkev vuln

🔍 Vulnerability Description

BQE BillQuick Web Suite 2018 through 2021 before 22.0.9.1 allows SQL injection for unauthenticated remote code execution. Successful exploitation can include the ability to execute arbitrary code as MSSQLSERVER$ via xp_cmdshell.

🌐 HTTP Request

GET / HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Windows NT 5.1; rv:52.0) Gecko/20100101 Firefox/52.0
Connection: close
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2021/CVE-2021-42258.yaml

🦈 Packet Capture: ⬇️ Download cve-2021-42258.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A