CVE-2023-3984: phpscriptpoint RecipePoint recipe-result sql injection
A vulnerability, which was classified as critical, was found in phpscriptpoint RecipePoint 1.9. This affects an unknown part of the file /recipe-result. The manipulation of the argument text/category/type/difficulty/cuisine/cookingmethod leads to sql injection. It is possible to initiate the attack remotely. The identifier VDB-235605 was assigned to this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-3984?
CVE-2023-3984 is classified as a critical vulnerability.
How do I fix CVE-2023-3984?
To fix CVE-2023-3984, update RecipePoint to the latest version or apply security patches recommended by the vendor.
What type of vulnerability is CVE-2023-3984?
CVE-2023-3984 is an SQL injection vulnerability affecting RecipePoint 1.9.
What are the affected components of CVE-2023-3984?
CVE-2023-3984 affects the file /recipe-result in RecipePoint 1.9.
What can attackers achieve with CVE-2023-3984?
Attackers can manipulate parameters leading to SQL injection, potentially allowing unauthorized database access.