CVE-2023-44163
CVSS 3.1 Score 9.8 of 10 (high)
Details
Published Sep 28, 2023
Updated: Sep 30, 2023
CWE ID 89
Summary
CVE-2023-44163 is a vulnerability affecting the process_search.php resource. The issue lies in the lack of validation for characters received in the 'search' parameter, allowing malicious input to be directly sent to the database without filtering. This can potentially lead to SQL injection attacks. Users are advised to update their systems to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share