CVE-2022-31357: SQL Injection
Published Jun 17, 2022
·Updated
Online Ordering System v2.3.2 was discovered to contain a SQL injection vulnerability via /ordering/admin/inventory/index.php?view=edit&id=.
Affected Software
1 affected component
Online Ordering System Project Online Ordering System=2.3.2
Event History
Jun 17, 2022
CVE Published
via MITRE·01:29 PM
Data Sourced
via MITRE·01:29 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2022-31357?
CVE-2022-31357 has a medium severity rating due to its potential for SQL injection exploitation.
2
How do I fix CVE-2022-31357?
To fix CVE-2022-31357, update the Online Ordering System to a version that addresses this SQL injection vulnerability.
3
What is the impact of CVE-2022-31357?
The impact of CVE-2022-31357 can lead to unauthorized access to the database and exposure of sensitive data.
4
Which versions of Online Ordering System are affected by CVE-2022-31357?
CVE-2022-31357 affects Online Ordering System version 2.3.2.
5
What is SQL injection in the context of CVE-2022-31357?
SQL injection in the context of CVE-2022-31357 refers to the vulnerability that allows an attacker to manipulate SQL queries through unsanitized user input.