CVE-2023-3679: SourceCodester Lost and Found Information System HTTP POST Request sql injection
A vulnerability was found in SourceCodester Lost and Found Information System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /classes/Master.php?f=saveinquiry of the component HTTP POST Request Handler. The manipulation of the argument id leads to sql injection. The attack may be launched remotely. The identifier of this vulnerability is VDB-234224.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-3679?
The severity of CVE-2023-3679 is critical.
What is the affected software of CVE-2023-3679?
The affected software of CVE-2023-3679 is Oretnom23 Lost And Found Information System 1.0.
What is the CWE of CVE-2023-3679?
The CWE of CVE-2023-3679 is CWE-89.
How can I fix CVE-2023-3679?
To fix CVE-2023-3679, apply the latest patch or update provided by the software vendor, and ensure that proper input validation and sanitization is implemented in the affected component.
Are there any references available for CVE-2023-3679?
Yes, you can find references for CVE-2023-3679 at the following links: [Reference 1](https://vuldb.com/?id.234224), [Reference 2](https://vuldb.com/?ctiid.234224).