CVE-2022-31328: SQL Injection
Published May 31, 2022
·Updated
Online Ordering System By janobe 2.3.2 has SQL Injection via /ordering/admin/products/index.php?view=edit&id=.
Affected Software
1 affected component
Online Ordering System Project Online Ordering System=2.3.2
Event History
May 31, 2022
CVE Published
via MITRE·03:26 PM
Data Sourced
via MITRE·03:26 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2022-31328?
CVE-2022-31328 is classified as a high-severity vulnerability due to its potential for SQL injection attacks.
2
How do I fix CVE-2022-31328?
To fix CVE-2022-31328, update your Online Ordering System to the latest version that addresses the SQL injection vulnerability.
3
What systems are affected by CVE-2022-31328?
CVE-2022-31328 affects the Online Ordering System version 2.3.2.
4
What type of attack can be executed through CVE-2022-31328?
CVE-2022-31328 allows attackers to execute SQL injection attacks via the vulnerable URL parameter.
5
Is CVE-2022-31328 easy to exploit?
Yes, CVE-2022-31328 can be easily exploited by attackers with basic knowledge of SQL injection techniques.