First published: Tue Mar 14 2023(Updated: )
BP Monitoring Management System v1.0 was discovered to contain a SQL injection vulnerability via the emailid parameter in the login page.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Bp Monitoring Management System Project Bp Monitoring Management System | =1.0 | |
PHPGurukul BP Monitoring Management System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-27074 is a SQL injection vulnerability in the BP Monitoring Management System v1.0 via the emailid parameter in the login page.
CVE-2023-27074 has a severity rating of 9.8, making it critical.
BP Monitoring Management System v1.0 and PHPGurukul BP Monitoring Management System v1.0 are affected by CVE-2023-27074.
CVE-2023-27074 is associated with CWE 89, which is the SQL Injection vulnerability category.
Yes, you can find references for CVE-2023-27074 at the following links: [GitHub](https://github.com/bhaveshkush007/CVEs/blob/main/CVE-2023-27074.txt) and [PHPGurukul](https://phpgurukul.com/bp-monitoring-management-system-using-php-and-mysql/).