CVE-2023-45111: Online Examination System v1.0 - Multiple Unauthenticated SQL Injections (SQLi)
Online Examination System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'email' parameter of the feed.php resource does not validate the characters received and they are sent unfiltered to the database.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-45111?
The severity of CVE-2023-45111 is critical with a severity value of 9.8.
What is the affected software for CVE-2023-45111?
The affected software for CVE-2023-45111 is Online Examination System v1.0.
How does CVE-2023-45111 affect the Online Examination System?
CVE-2023-45111 allows multiple unauthenticated SQL injection vulnerabilities in the Online Examination System v1.0.
How can I fix the SQL injection vulnerabilities in Online Examination System v1.0?
To fix the SQL injection vulnerabilities in Online Examination System v1.0, the 'email' parameter of the feed.php resource should be validated and filtered before sending it to the database.
Where can I find more information about CVE-2023-45111?
You can find more information about CVE-2023-45111 at the following references: [link1](https://fluidattacks.com/advisories/pires), [link2](https://projectworlds.in/).