CVE-2023-42359: SQL Injection
Published Sep 18, 2023
·Updated
SQL injection vulnerability in Exam Form Submission in PHP with Source Code v.1.0 allows a remote attacker to escalate privileges via the val-username parameter in /index.php.
Affected Software
1 affected component
Exam Form Submission In Php With Source Code Project Exam Form Submission In Php With Source Code=1.0
Event History
Sep 18, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2023-42359.
2
What is the severity of CVE-2023-42359?
The severity of CVE-2023-42359 is critical with a score of 9.8.
3
How does CVE-2023-42359 affect the Exam Form Submission in PHP with Source Code v.1.0?
CVE-2023-42359 allows a remote attacker to escalate privileges via the val-username parameter in /index.php.
4
How can I fix the SQL injection vulnerability in Exam Form Submission in PHP with Source Code v.1.0?
To fix the SQL injection vulnerability, you need to sanitize user input and use parameterized queries to prevent SQL injection attacks.
5
Is there any reference or further information about CVE-2023-42359?
Yes, you can find more information about CVE-2023-42359 at this link: [CVE-2023-42359 Reference](https://upbeat-washer-def.notion.site/Exam-Form-Submission-In-PHP-SQL-Injection-in-index-php-bd71962db712459488019d531ab2f6f2?pvs=4)