CVE-2023-38913: SQL Injection
Published Dec 15, 2025
·Updated
SQL injection vulnerability in anirbandutta9 NEWS-BUZZ v.1.0 allows a remote attacker to execute arbitrary code via a crafted script.
Affected Software
2 affected components
anirbandutta9 News-Buzz
anirbandutta9 News-Buzz=1.0
Event History
Dec 15, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·09:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-38913?
CVE-2023-38913 is classified as a high severity SQL injection vulnerability that can allow remote code execution.
2
How do I fix CVE-2023-38913?
To fix CVE-2023-38913, update to the latest version of the anirbandutta9 NEWS-BUZZ application that patches the SQL injection flaw.
3
Who is affected by CVE-2023-38913?
CVE-2023-38913 affects users of anirbandutta9 NEWS-BUZZ version 1.0.
4
What type of vulnerability is CVE-2023-38913?
CVE-2023-38913 is an SQL injection vulnerability allowing attackers to execute arbitrary code.
5
Can CVE-2023-38913 be exploited remotely?
Yes, CVE-2023-38913 can be exploited remotely, allowing attackers to gain unauthorized access to the system.