CVE-2023-1054

CWE-89SQL Injection4 documents4 sources
Severity
9.8CRITICAL
EPSS
0.2%
top 55.53%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 27
Latest updateNov 22

Description

A vulnerability was found in SourceCodester Music Gallery Site 1.0. It has been classified as critical. Affected is an unknown function of the file /admin/?page=user/manage. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The identifier of this vulnerability is VDB-221820.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:LExploitability: 1.2 | Impact: 3.4

🔴Vulnerability Details

3
GHSA
SQL injection in Apache Submarine2023-11-22
GHSA
GHSA-qrgj-qccj-whvx: A vulnerability was found in SourceCodester Music Gallery Site 12023-02-27
CVEList
SourceCodester Music Gallery Site sql injection2023-02-27
CVE-2023-1054 (CRITICAL CVSS 9.8) | A vulnerability was found in Source | cvebase.io