First published: Thu May 11 2023(Updated: )
A vulnerability classified as critical has been found in SourceCodester AC Repair and Services System 1.0. Affected is an unknown function of the file /classes/Master.php?f=delete_service. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-228798 is the identifier assigned to this vulnerability.
Credit: cna@vuldb.com cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oretnom23 Ac Repair And Services System | =1.0 | |
=1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-2656 is a critical vulnerability found in SourceCodester AC Repair and Services System 1.0, which allows for remote SQL injection attacks.
CVE-2023-2656 is classified as critical with a severity level of 9.8.
The affected software for CVE-2023-2656 is Oretnom23 AC Repair and Services System version 1.0.
CVE-2023-2656 can be exploited by manipulating the 'id' argument in the /classes/Master.php?f=delete_service file, leading to SQL injection attacks.
At the moment, there is no known fix for CVE-2023-2656. It is recommended to reach out to the software vendor for further assistance.