CVE-2023-37771
CVSS 3.1 Score 9.8 of 10 (high)
Details
Published Jul 31, 2023
Updated: Aug 4, 2023
CWE ID 89
Summary
CVE-2023-37771 is a newly identified SQL injection vulnerability affecting the Art Gallery Management System version 1.0. An attacker can exploit this issue by sending malicious SQL queries through the cid parameter in the /agms/product.php file. Successful exploitation could allow the attacker to gain unauthorized access to sensitive data, modify data, or even take control of the system. Organizations using this outdated software are urged to apply the necessary patches or upgrades as soon as possible to mitigate the risk of this vulnerability.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share