Vulnerability CVE-2023-43013


Published: 2023-09-28

Description:
Asset Management System v1.0 is vulnerable to an

unauthenticated SQL Injection vulnerability on the

'email' parameter of index.php page, allowing an

external attacker to dump all the contents of the

database contents and bypass the login control.



 References:
https://fluidattacks.com/advisories/nergal
https://projectworlds.in/

Copyright 2026, cxsecurity.com

 

Back to Top