First published: Sat Apr 08 2023(Updated: )
A vulnerability classified as critical has been found in SourceCodester Online Computer and Laptop Store 1.0. Affected is an unknown function of the file login.php of the component User Registration. The manipulation of the argument email leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-225342 is the identifier assigned to this vulnerability.
Credit: cna@vuldb.com cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oretnom23 Online Computer And Laptop Store | =1.0 | |
=1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-1955 is critical.
The affected software of CVE-2023-1955 is SourceCodester Online Computer and Laptop Store 1.0.
The vulnerability type of CVE-2023-1955 is SQL injection.
The SQL injection attack in CVE-2023-1955 can be launched by manipulating the argument 'email' in the login.php file of the User Registration component.
Currently, there is no information available regarding a fix for CVE-2023-1955. It is recommended to contact the vendor or developer for further assistance.