CVE-2023-2207: Campcodes Retro Basketball Shoes Online Store contactus1.php sql injection
A vulnerability classified as critical was found in Campcodes Retro Basketball Shoes Online Store 1.0. This vulnerability affects unknown code of the file contactus1.php. The manipulation of the argument email leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-226972.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-2207?
CVE-2023-2207 has a severity rating of high with a CVSS score of 7.5.
What type of vulnerability is CVE-2023-2207?
CVE-2023-2207 is classified as an SQL injection vulnerability.
How can CVE-2023-2207 be exploited?
CVE-2023-2207 can be exploited remotely by manipulating the 'email' argument in the contactus1.php file.
Is there a fix available for CVE-2023-2207?
To mitigate CVE-2023-2207, it is advised to sanitize and validate user inputs in the contactus1.php file.
What software is affected by CVE-2023-2207?
CVE-2023-2207 affects the Campcodes Retro Basketball Shoes Online Store version 1.0.