CVE-2023-6464

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Dec 2, 2023
Updated: May 17, 2024
CWE ID 89

Summary

CVE-2023-6464: A critical vulnerability has been identified in the SourceCodester User Registration and Login System 1.0. The issue lies in an unknown functionality of the file /endpoint/add-user.php, which is susceptible to SQL injection. Attackers can remotely manipulate the 'user' argument to launch this exploit. The vulnerability, identified as VDB-246614, has been disclosed to the public, posing a significant threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share