First published: Fri Sep 01 2023(Updated: )
Senayan Library Management Systems SLIMS 9 Bulian v 9.6.1 is vulnerable to SQL Injection via admin/modules/circulation/loan_rules.php.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Library Management System | =9.6.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2023-40970.
The severity of CVE-2023-40970 is high with a severity score of 8.8.
The affected software is Senayan Library Management Systems SLIMS 9 Bulian v 9.6.1.
An attacker can exploit this vulnerability through SQL Injection via the 'loan_rules.php' module in the 'circulation' directory of the 'admin' module.
Yes, you can refer to the following links for more information: [GitHub - komangsughosa/CVE-ID-not-yet](https://github.com/komangsughosa/CVE-ID-not-yet/blob/main/slims/slims9_bulian-9.6.1-SQLI-loan_rules.md) and [GitHub - slims/slims9_bulian/issues/205](https://github.com/slims/slims9_bulian/issues/205).