CVE-2023-4200

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Aug 7, 2023
Updated: May 17, 2024
CWE ID 1236

Summary

CVE-2023-4200 is a critical vulnerability affecting the SourceCodester Inventory Management System 1.0. The issue lies within the file product_data.php and stems from a code segment that is currently unknown. Attackers can exploit this vulnerability by manipulating the arguments' columns[1][data], leading to SQL injection. This exploit can be initiated remotely, making it a significant threat. VDB-236290 is the identifier assigned to this vulnerability, and since its exploit has been disclosed to the public, it's essential to apply the necessary patches or updates as soon as possible.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • IBM Security Guardium

Affected Vendors

  • IBM Corporation