First published: Thu Sep 28 2023(Updated: )
Sourcecodester Packers and Movers Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /inquiries/view_inquiry.php.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Oretnom23 Packers And Movers Management System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-30415 is critical with a CVSS score of 9.8.
The SQL injection vulnerability in CVE-2023-30415 can be exploited by manipulating the 'id' parameter in the 'view_inquiry.php' page.
You can check if your version of Sourcecodester Packers and Movers Management System is affected by CVE-2023-30415 by verifying if it is version 1.0.
There is no known fix available at the moment for CVE-2023-30415. It is recommended to apply appropriate security measures such as input validation and parameterized queries to mitigate the risk.
You can find more information about CVE-2023-30415 at the following references: http://packetstormsecurity.com/files/174758/Packers-And-Movers-Management-System-1.0-SQL-Injection.html and https://robsware.github.io/2023/09/01/firstcve