CVE-2022-31347: SQL Injection
Published Jun 1, 2022
·Updated
Online Car Wash Booking System v1.0 is vulnerable to SQL Injection via /ocwbs/classes/Master.php?f=deletevehicle.
Affected Software
2 affected components
Online Car Wash Booking System Project Online Car Wash Booking System=1.0
oretnom23 Online Car Wash Booking System=1.0
Event History
Jun 1, 2022
CVE Published
via MITRE·01:34 PM
Data Sourced
via MITRE·01:34 PM
Description
Jun 2, 2022
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-31347?
CVE-2022-31347 has a medium severity rating due to its potential to allow unauthorized access to sensitive data.
2
How do I fix CVE-2022-31347?
To fix CVE-2022-31347, sanitize and validate all user inputs in the SQL queries to prevent SQL Injection.
3
What type of vulnerability is CVE-2022-31347?
CVE-2022-31347 is classified as an SQL Injection vulnerability.
4
Is CVE-2022-31347 exploitable remotely?
Yes, CVE-2022-31347 can be exploited remotely via the vulnerable endpoint.
5
What software is affected by CVE-2022-31347?
CVE-2022-31347 affects Online Car Wash Booking System version 1.0.