CVE-2023-3872
CVSS 3.1 Score 7.5 of 10 (high)
Details
Published Jul 24, 2023
Updated: May 17, 2024
CWE ID 89
Summary
A critical vulnerability, identified as CVE-2023-3872, has been discovered in Campcodes Beauty Salon Management System 1.0. This vulnerability affects the unknown code of the file /admin/edit-services.php and can be exploited through SQL injection. The attack can be initiated remotely, posing a potential danger to organizations using this system. It is important for affected organizations to remediate this vulnerability by applying security patches or updates provided by the vendor to protect against unauthorized access and potential data breaches.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share