Vulnerability CVE-2023-43014


Published: 2023-09-28   Modified: 2023-09-29

Description:
Asset Management System v1.0 is vulnerable to

an Authenticated SQL Injection vulnerability

on the 'first_name' and 'last_name' parameters

of user.php page, allowing an authenticated

attacker to dump all the contents of the database

contents.



 References:
https://fluidattacks.com/advisories/gaahl
https://projectworlds.in/

Copyright 2026, cxsecurity.com

 

Back to Top