CVE-2023-37847: SQL Injection
Published Aug 14, 2023
·Updated
novel-plus v3.6.2 was discovered to contain a SQL injection vulnerability.
Affected Software
2 affected components
novel-plus novel-plus=3.6.2
xxyopen Novel-Plus=3.6.2
Event History
Aug 14, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·12:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2023-37847?
CVE-2023-37847 is a SQL injection vulnerability in novel-plus v3.6.2.
2
What is the severity of CVE-2023-37847?
CVE-2023-37847 has a severity rating of 9.8 (critical).
3
How does CVE-2023-37847 affect novel-plus v3.6.2?
CVE-2023-37847 allows an attacker to perform SQL injection attacks on novel-plus v3.6.2.
4
How can I fix CVE-2023-37847?
To fix CVE-2023-37847, it is recommended to upgrade to a version of novel-plus that has addressed the SQL injection vulnerability.
5
What is CWE-89?
CWE-89 is a category of vulnerabilities known as SQL injection.