First published: Thu Apr 27 2023(Updated: )
A vulnerability was found in SourceCodester Service Provider Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /classes/Master.php?f=delete_inquiry. The manipulation leads to improper authorization. The attack may be launched remotely. The identifier of this vulnerability is VDB-227588.
Credit: cna@vuldb.com cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oretnom23 Service Provider Management System | =1.0 | |
=1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-2345 is critical.
CVE-2023-2345 affects some unknown functionality of the file /classes/Master.php?f=delete_inquiry in SourceCodester Service Provider Management System 1.0.
The vulnerability in CVE-2023-2345 is improper authorization caused by manipulation of the /classes/Master.php?f=delete_inquiry file.
Yes, CVE-2023-2345 can be exploited remotely.
To fix CVE-2023-2345, it is recommended to apply the latest patch or update provided by the vendor.