Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-1736

Опубликовано: 30 мар. 2023
Источник: nvd
CVSS3: 5.5
CVSS3: 8.8
CVSS2: 5.2
EPSS Низкий

Описание

A vulnerability, which was classified as critical, has been found in SourceCodester Young Entrepreneur E-Negosyo System 1.0. Affected by this issue is some unknown functionality of the file cart/controller.php?action=add. The manipulation of the argument PROID leads to sql injection. The identifier of this vulnerability is VDB-224624.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:young_entrepreneur_e-negosyo_system_project:young_entrepreneur_e-negosyo_system:1.0:*:*:*:*:*:*:*

EPSS

Процентиль: 9%
0.00031
Низкий

5.5 Medium

CVSS3

8.8 High

CVSS3

5.2 Medium

CVSS2

Дефекты

CWE-89
CWE-89

Связанные уязвимости

CVSS3: 8.8
github
почти 3 года назад

A vulnerability, which was classified as critical, has been found in SourceCodester Young Entrepreneur E-Negosyo System 1.0. Affected by this issue is some unknown functionality of the file cart/controller.php?action=add. The manipulation of the argument PROID leads to sql injection. The identifier of this vulnerability is VDB-224624.

EPSS

Процентиль: 9%
0.00031
Низкий

5.5 Medium

CVSS3

8.8 High

CVSS3

5.2 Medium

CVSS2

Дефекты

CWE-89
CWE-89