CVE-2023-3275: PHPGurukul Rail Pass Management System POST Request view-pass-detail.php sql injection
A vulnerability classified as critical was found in PHPGurukul Rail Pass Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /view-pass-detail.php of the component POST Request Handler. The manipulation of the argument searchdata leads to sql injection. The attack can be launched remotely. The identifier VDB-231625 was assigned to this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-3275?
CVE-2023-3275 is classified as a critical severity vulnerability.
How does CVE-2023-3275 affect the Rail Pass Management System?
CVE-2023-3275 affects an unknown functionality of the file /view-pass-detail.php in the POST Request Handler.
What type of vulnerability is CVE-2023-3275?
CVE-2023-3275 is a SQL injection vulnerability that can be exploited through the argument searchdata.
How can I mitigate CVE-2023-3275 in my application?
To mitigate CVE-2023-3275, ensure to sanitize inputs and implement prepared statements in database queries.
Is there a patch available for CVE-2023-3275?
As of now, there is no specific patch publicly available for CVE-2023-3275.