CVE-2023-3658

CVSS 3.1 Score 5.4 of 10 (medium)

Details

Published Jul 13, 2023
Updated: May 17, 2024

Summary

CVE-2023-3658 is a critical vulnerability identified in the SourceCodester AC Repair and Services System 1.0. The issue lies within an unknown function of the Master.php?f=delete_book file, specifically the HTTP POST Request Handler component. Manipulation of the id argument can be exploited for sql injection attacks, posing a significant risk. Remotely executing this vulnerability is possible, making it a serious concern for system security. This vulnerability has been assigned the identifier VDB-234012.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share