CVE-2022-31354: SQL Injection
Published Jun 1, 2022
·Updated
Online Car Wash Booking System v1.0 is vulnerable to SQL Injection via /ocwbs/classes/Master.php?f=getvehicleservice.
Affected Software
2 affected components
Online Car Wash Booking System Project Online Car Wash Booking System=1.0
oretnom23 Online Car Wash Booking System=1.0
Event History
Jun 1, 2022
CVE Published
via MITRE·01:25 PM
Data Sourced
via MITRE·01:25 PM
Description
Jun 2, 2022
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-31354?
CVE-2022-31354 has a moderate severity level due to its potential for exploitation through SQL Injection.
2
How do I fix CVE-2022-31354?
To fix CVE-2022-31354, ensure proper parameterized queries and input validation are implemented on the affected endpoints.
3
What type of vulnerability is CVE-2022-31354?
CVE-2022-31354 is classified as an SQL Injection vulnerability.
4
What software is affected by CVE-2022-31354?
CVE-2022-31354 affects Online Car Wash Booking System version 1.0.
5
Can CVE-2022-31354 lead to data leakage?
Yes, CVE-2022-31354 can potentially lead to unauthorized data access and leakage through SQL Injection.