cve/2023/CVE-2023-1461.md

18 lines
867 B
Markdown
Raw Normal View History

2024-05-25 21:48:12 +02:00
### [CVE-2023-1461](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1461)
![](https://img.shields.io/static/v1?label=Product&message=Canteen%20Management%20System&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=%3D%201.0%20&color=brighgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=CWE-89%20SQL%20Injection&color=brighgreen)
### Description
A vulnerability was found in SourceCodester Canteen Management System 1.0. It has been declared as critical. This vulnerability affects the function query of the file createCategories.php. The manipulation of the argument categoriesStatus leads to sql injection. The attack can be initiated remotely. VDB-223306 is the identifier assigned to this vulnerability.
### POC
#### Reference
No PoCs from references.
#### Github
- https://github.com/karimhabush/cyberowl