CVE-2015-6944: Jsp/mysql Administrador Web Project Jsp/mysql Administrador Web
Medium severity, CVSS 6.8. EPSS: 2.4% chance of exploitation in the next 30 days.
Cross-site request forgery (CSRF) vulnerability in JSP/MySQL Administrador Web 1 allows remote attackers to hijack the authentication of users for requests that execute arbitrary SQL commands via the cmd parameter to sys/sys/listaBD2.jsp.
Affected products
- Jsp/mysql Administrador Web Project Jsp/mysql Administrador Web: version 1.0 only
Published 2015-09-15. Last modified 2026-06-17.