CVE-2023-27202: SQL Injection
Published Mar 9, 2023
·Updated
Best POS Management System 1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /kruxton/receipt.php.
Affected Software
2 affected components
Best Pos Management System Project Best Pos Management System=1.0
Mayurik Best Pos Management System=1.0
Event History
Mar 9, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·09:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-27202?
The severity of CVE-2023-27202 is critical with a CVSS score of 9.8.
2
How to fix CVE-2023-27202?
To fix CVE-2023-27202, ensure that user-supplied input passed through the 'id' parameter is properly validated and sanitized to prevent SQL injection attacks.
3
What software is affected by CVE-2023-27202?
Best POS Management System 1.0 is affected by CVE-2023-27202.