HIGH🇵🇱 Wersja polska

CVE-2022-3583

CVSS 7.3v3.1pub. 2022-10-18upd. 2024-11-21

A vulnerability was found in SourceCodester Canteen Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file login.php. The manipulation of the argument business leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-211192.

CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
  • Canteen Management System Project Canteen Management System

    APP
    Canteen Management System Project
    1.0
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Tags
SQLi
CWE
References

Related vulnerabilities

CVE-2023-23279CRITICAL9.8PL ✓same product

SQL Injection w Canteen Management System 1.0 — pełny dostęp do bazy danych

CVE-2022-43265CRITICAL9.8PL ✓same product

Arbitrary file upload umożliwiający RCE w Canteen Management System

CVE-2022-43146HIGH7.2same product

An arbitrary file upload vulnerability in the image upload function of Canteen Management System v1.0 allows a...

CVE-2022-43277HIGH7.2same product

Canteen Management System v1.0 was discovered to contain an arbitrary file upload vulnerability via ip/youthap...

CVE-2022-43278HIGH7.2same product

Canteen Management System v1.0 was discovered to contain a SQL injection vulnerability via the categoriesId pa...