CVE-2022-34948: SQL Injection
Pharmacy Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at editbrand.php.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-34948?
CVE-2022-34948 has been classified as a high severity vulnerability due to its potential to allow unauthenticated attackers to execute SQL commands.
How do I fix CVE-2022-34948?
To fix CVE-2022-34948, ensure proper input validation and use prepared statements to mitigate SQL injection risks in the editbrand.php file.
What software versions are affected by CVE-2022-34948?
CVE-2022-34948 specifically affects Pharmacy Management System version 1.0.
Can CVE-2022-34948 lead to data breaches?
Yes, CVE-2022-34948 can potentially lead to data breaches by exposing sensitive information through SQL injection attacks.
Is CVE-2022-34948 being actively exploited?
While there is no public information indicating active exploitation of CVE-2022-34948, it is recommended to address the vulnerability promptly.