{"id":"BIT-seopanel-2021-34117","details":"SQL Injection vulnerability in SEO Panel 4.9.0 in api/user.api.php in function getUserName in the username parameter, allows attackers to gain sensitive information.","aliases":["CVE-2021-34117"],"modified":"2024-03-06T11:25:28.861Z","published":"2024-03-06T11:05:34.101Z","database_specific":{"cpes":["cpe:2.3:a:seopanel:seo_panel:4.9.0:*:*:*:*:*:*:*"],"severity":"High"},"references":[{"type":"WEB","url":"https://gist.github.com/victomteng1997/a0d47d6982a7b382f632ec7e8c3307f1"},{"type":"WEB","url":"https://github.com/seopanel/Seo-Panel/issues/219"},{"type":"WEB","url":"https://www.seopanel.org/"}],"affected":[{"package":{"name":"seopanel","ecosystem":"Bitnami","purl":"pkg:bitnami/seopanel"},"ranges":[{"type":"SEMVER","events":[{"introduced":"4.9.0"},{"last_affected":"4.9.0"}]}],"database_specific":{"source":"https://github.com/bitnami/vulndb/tree/main/data/seopanel/BIT-seopanel-2021-34117.json"},"severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N"}]}],"schema_version":"1.7.3"}