CVE-2023-1432: SourceCodester Online Food Ordering System POST Request access control
A vulnerability was found in SourceCodester Online Food Ordering System 2.0 and classified as critical. Affected by this issue is some unknown functionality of the file /fos/admin/ajax.php?action=savesettings of the component POST Request Handler. The manipulation leads to improper access controls. The attack may be launched remotely. VDB-223214 is the identifier assigned to this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2023-1432.
What is the severity of CVE-2023-1432?
The severity of CVE-2023-1432 is critical with a score of 9.8.
What is the affected software?
The affected software is SourceCodester Online Food Ordering System version 2.0.
What is the component affected by CVE-2023-1432?
The component affected by CVE-2023-1432 is the POST Request Handler located at /fos/admin/ajax.php?action=save_settings.
How can I fix CVE-2023-1432?
To fix CVE-2023-1432, it is recommended to apply the latest patch or update provided by the vendor.