CVE-2023-0305
Published on: Not Yet Published
Last Modified on: 01/25/2023 03:25:00 PM UTC
Certain versions of Online Food Ordering System V2 from Online Food Ordering System V2 Project contain the following vulnerability:
A vulnerability classified as critical was found in SourceCodester Online Food Ordering System. This vulnerability affects unknown code of the file admin_class.php of the component Login Module. The manipulation of the argument username leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-218386 is the identifier assigned to this vulnerability.
- CVE-2023-0305 has been assigned by
[email protected] to track the vulnerability - currently rated as HIGH severity.
- Affected Vendor/Software:
SourceCodester - Online Food Ordering System version = n/a
CVSS3 Score: 7.5 - HIGH
Attack Vector ⓘ |
Attack Complexity |
Privileges Required |
User Interaction |
---|---|---|---|
NETWORK | LOW | NONE | NONE |
Scope | Confidentiality Impact |
Integrity Impact |
Availability Impact |
UNCHANGED | HIGH | NONE | NONE |
CVE References
Description | Tags ⓘ | Link |
---|---|---|
cvetest/3.pdf at main · Hanfu-l/cvetest · GitHub | github.com text/html |
![]() |
vuldb.com text/plain Inactive LinkNot Archived |
![]() | |
vuldb.com text/plain Inactive LinkNot Archived |
![]() |
There are currently no QIDs associated with this CVE
Known Affected Configurations (CPE V2.3)
Type | Vendor | Product | Version | Update | Edition | Language |
---|---|---|---|---|---|---|
Application | Online Food Ordering System V2 Project | Online Food Ordering System V2 | - | All | All | All |
- cpe:2.3:a:online_food_ordering_system_v2_project:online_food_ordering_system_v2:-:*:*:*:*:*:*:*:
No vendor comments have been submitted for this CVE
Social Mentions
Source | Title | Posted (UTC) |
---|