CVE-2023-0256: SourceCodester Online Food Ordering System Login Page sql injection
A vulnerability was found in SourceCodester Online Food Ordering System 2.0. It has been classified as critical. Affected is an unknown function of the file /fos/admin/ajax.php?action=login of the component Login Page. The manipulation of the argument Username leads to sql injection. It is possible to launch the attack remotely. The identifier of this vulnerability is VDB-218184.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-0256?
The severity of CVE-2023-0256 is critical.
What component of SourceCodester Online Food Ordering System is affected by CVE-2023-0256?
The component affected by CVE-2023-0256 is the Login Page.
What is the vulnerability in CVE-2023-0256?
The vulnerability in CVE-2023-0256 is a SQL injection through the 'Username' argument.
How can the vulnerability in CVE-2023-0256 be exploited?
The vulnerability in CVE-2023-0256 can be exploited by manipulating the 'Username' argument to execute SQL injections.
How can I fix the vulnerability in CVE-2023-0256 in SourceCodester Online Food Ordering System?
To fix the vulnerability in CVE-2023-0256, it is recommended to implement proper input validation and parameterized queries to prevent SQL injection attacks.