CVE-2022-31345: SQL Injection
Published Jun 1, 2022
·Updated
Online Car Wash Booking System v1.0 is vulnerable to SQL Injection via /ocwbs/admin/?page=user/manageuser&id=.
Affected Software
2 affected components
Online Car Wash Booking System Project Online Car Wash Booking System=1.0
oretnom23 Online Car Wash Booking System=1.0
Event History
Jun 1, 2022
CVE Published
via MITRE·01:37 PM
Data Sourced
via MITRE·01:37 PM
Description
Jun 2, 2022
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-31345?
CVE-2022-31345 is classified as a critical vulnerability due to its potential to allow unauthorized access to the database.
2
How do I fix CVE-2022-31345?
To fix CVE-2022-31345, sanitize and validate all user inputs in the query parameters to prevent SQL injection.
3
What exploitation methods are associated with CVE-2022-31345?
CVE-2022-31345 can be exploited using SQL injection techniques to manipulate database queries and retrieve sensitive information.
4
What systems are affected by CVE-2022-31345?
CVE-2022-31345 affects the Online Car Wash Booking System version 1.0.
5
What are the potential impacts of CVE-2022-31345?
The potential impacts of CVE-2022-31345 include unauthorized data access, data manipulation, and compromise of application integrity.