First published: Thu Mar 07 2024(Updated: )
Sourcecodester Lost and Found Information System's Version 1.0 is vulnerable to unauthenticated SQL Injection at "?page=items/view&id=*" which can be escalated to the remote command execution.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Sourcecodester Lost and Found Information System | ||
Sourcecodester Lost and Found Information System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-33676 has been classified as a high severity vulnerability due to its potential for unauthorized access and remote command execution.
To mitigate CVE-2023-33676, ensure that user input is properly sanitized and use prepared statements to protect against SQL injection.
CVE-2023-33676 affects Version 1.0 of the Sourcecodester Lost and Found Information System.
CVE-2023-33676 is categorized as an unauthenticated SQL Injection vulnerability.
Yes, CVE-2023-33676 can be exploited to potentially escalate to remote command execution.