Podatność CVE-2023-48823


Publikacja: 2023-12-07   Modyfikacja: 2023-12-14

Opis:
A Blind SQL injection issue in ajax.php in GaatiTrack Courier Management System 1.0 allows an unauthenticated attacker to inject a payload via the email parameter during login.

Typ:

CWE-89

(Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection'))

Affected software
Mayurik -> Courier management system 

 Referencje:
http://packetstormsecurity.com/files/176030

Copyright 2024, cxsecurity.com

 

Back to Top