Vulnerability CVE-2023-1461


Published: 2023-03-17

Description:
A vulnerability was found in SourceCodester Canteen Management System 1.0. It has been declared as critical. This vulnerability affects the function query of the file createCategories.php. The manipulation of the argument categoriesStatus leads to sql injection. The attack can be initiated remotely. VDB-223306 is the identifier assigned to this vulnerability.

Type:

CWE-89

(Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection'))

 References:
https://blog.csdn.net/weixin_43864034/article/details/129622219
https://vuldb.com/?ctiid.223306
https://vuldb.com/?id.223306

Copyright 2023, cxsecurity.com

 

Back to Top