cve/2023/CVE-2023-38870.md
2024-06-07 17:53:02 +00:00

730 B

CVE-2023-38870

Description

A SQL injection vulnerability exists in gugoan Economizzer commit 3730880 (April 2023) and v.0.9-beta1. The cash book has a feature to list accomplishments by category, and the 'category_id' parameter is vulnerable to SQL Injection.

POC

Reference

Github

No PoCs found on GitHub currently.