CVE-2023-41594

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Sep 8, 2023
Updated: Oct 4, 2023
CWE ID 89

Summary

CVE-2023-41594: A serious vulnerability was identified in the Dairy Farm Shop Management System using PHP and MySQL v1.1. The Login function, specifically the Username and Password parameters, were found to be susceptible to SQL injection attacks, allowing unauthorized users to gain access to sensitive information or even take control of the system. Successful exploitation could lead to data theft or system manipulation, posing a significant risk to organizations using this software. Users are strongly encouraged to update their systems as soon as possible to mitigate this threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share