CVE-2023-3984

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Jul 28, 2023
Updated: May 17, 2024
CWE ID 287

Summary

CVE-2023-3984 is a critical vulnerability affecting the phpscriptpoint RecipePoint 1.9 software. The issue lies in the file /recipe-result, where manipulation of the text, category, type, difficulty, cuisine, and cooking_method arguments can lead to SQL injection. This vulnerability allows unauthorized remote access and was assigned identifier VDB-235605 by the Vulnerability Database.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share