First published: Tue Sep 15 2020(Updated: )
Projectworlds House Rental v1.0 suffers from an unauthenticated SQL Injection vulnerability, allowing remote attackers to execute arbitrary code on the hosting webserver via a malicious index.php POST request.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Projectworlds House Rental | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2020-23833 is critical with a severity value of 9.8.
CVE-2020-23833 affects Projectworlds House Rental v1.0 by exposing an unauthenticated SQL Injection vulnerability.
Remote attackers can exploit CVE-2020-23833 by sending malicious index.php POST requests, allowing them to execute arbitrary code on the hosting webserver.
Currently, there is no known fix available for CVE-2020-23833.
The Common Weakness Enumeration (CWE) for CVE-2020-23833 is CWE-89, which is a vulnerability related to SQL Injection.