First published: Tue Jun 06 2023(Updated: )
A vulnerability, which was classified as critical, has been found in SourceCodester Service Provider Management System 1.0. Affected by this issue is some unknown functionality of the file view.php. The manipulation of the argument id leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-230798 is the identifier assigned to this vulnerability.
Credit: cna@vuldb.com cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oretnom23 Service Provider Management System | =1.0 | |
=1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-3119 is high with a severity value of 8.8.
CVE-2023-3119 is a critical vulnerability found in SourceCodester Service Provider Management System 1.0 that allows for remote SQL injection through the file view.php.
CVE-2023-3119 affects SourceCodester Service Provider Management System 1.0 by allowing attackers to remotely launch SQL injection attacks through the file view.php.
At the moment, there is no known fix available for CVE-2023-3119. It is recommended to follow the vulnerability disclosure for updates and patches.
The CWE-ID of CVE-2023-3119 is CWE-89, which refers to Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection').