CVE-2023-4184

CVSS 3.1 Score 5.4 of 10 (medium)

Details

Published Aug 6, 2023
Updated: May 17, 2024
CWE ID 79

Summary

CVE-2023-4184: A critical vulnerability was identified in the SourceCodester Inventory Management System 1.0. This issue involves the manipulation of the pid argument in the sell_return.php file, leading to SQL injection. Attackers can exploit this remotely, potentially gaining unauthorized access or executing malicious SQL commands. (VDB-236219)

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share