CVE-2023-46792
Summary
| CVE | CVE-2023-46792 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-11-07 22:15:00 UTC |
| Updated | 2024-01-02 22:15:00 UTC |
| Description | Online Matrimonial Project v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'filename' attribute of the 'pic4' multipart parameter of the functions.php resource does not validate the characters received and they are sent unfiltered to the database. |
NVD Known Affected Configurations (CPE 2.3)
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.