CVE-2023-46014: SQL Injection
Published Nov 13, 2023
·Updated
SQL Injection vulnerability in hospitalLogin.php in Code-Projects Blood Bank 1.0 allows attackers to run arbitrary SQL commands via 'hemail' and 'hpassword' parameters.
Affected Software
1 affected component
Code-projects Blood Bank=1.0
Event History
Nov 13, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·10:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-46014?
The severity of CVE-2023-46014 is medium with a CVSS score of 5.5.
2
How can an attacker exploit CVE-2023-46014?
An attacker can exploit CVE-2023-46014 by using SQL injection techniques to execute arbitrary SQL commands through the 'hemail' and 'hpassword' parameters in hospitalLogin.php.
3
What is the affected software of CVE-2023-46014?
The affected software of CVE-2023-46014 is Code-Projects Blood Bank 1.0.
4
How do I fix CVE-2023-46014?
To fix CVE-2023-46014, update the Code-Projects Blood Bank software to a version that has a fix for the SQL injection vulnerability.