CVE-2023-1959
Published on: Not Yet Published
Last Modified on: 04/11/2023 07:33:00 PM UTC
Certain versions of Online Computer And Laptop Store from Online Computer And Laptop Store Project contain the following vulnerability:
A vulnerability has been found in SourceCodester Online Computer and Laptop Store 1.0 and classified as critical. This vulnerability affects unknown code of the file /classes/Master.php?f=save_category. The manipulation of the argument category leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-225346 is the identifier assigned to this vulnerability.
- CVE-2023-1959 has been assigned by
[email protected] to track the vulnerability - currently rated as HIGH severity.
- Affected Vendor/Software:
SourceCodester - Online Computer and Laptop Store version = 1.0
CVSS3 Score: 8.8 - HIGH
Attack Vector ⓘ |
Attack Complexity |
Privileges Required |
User Interaction |
---|---|---|---|
NETWORK | LOW | LOW | NONE |
Scope | Confidentiality Impact |
Integrity Impact |
Availability Impact |
UNCHANGED | HIGH | HIGH | HIGH |
CVE References
Description | Tags ⓘ | Link |
---|---|---|
Online-Computer-and-Laptop-Store/SQL injection exists at the newly added category list.pdf at main · boyi0508/Online-Computer-and-Laptop-Store · GitHub | Exploit Third Party Advisory github.com text/html |
![]() |
Login required | Permissions Required Third Party Advisory vuldb.com text/html Inactive LinkNot Archived |
![]() |
CVE-2023-1959 | SourceCodester Online Computer and Laptop Store sql injection | Third Party Advisory web.archive.org text/html Inactive LinkNot Archived |
![]() |
There are currently no QIDs associated with this CVE
Known Affected Configurations (CPE V2.3)
Type | Vendor | Product | Version | Update | Edition | Language |
---|---|---|---|---|---|---|
Application | Online Computer And Laptop Store Project | Online Computer And Laptop Store | 1.0 | All | All | All |
- cpe:2.3:a:online_computer_and_laptop_store_project:online_computer_and_laptop_store:1.0:*:*:*:*:*:*:*:
No vendor comments have been submitted for this CVE
Social Mentions
Source | Title | Posted (UTC) |
---|