CVE-2023-46980: Code Injection
Published Nov 3, 2023
·Updated
An issue in Best Courier Management System v.1.0 allows a remote attacker to execute arbitrary code and escalate privileges via a crafted script to the userID parameter.
Affected Software
1 affected component
Mayurik Best Courier Management System=1.0
Event History
Nov 3, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-46980?
The severity of CVE-2023-46980 is critical with a score of 9.8.
2
How can a remote attacker exploit CVE-2023-46980?
A remote attacker can exploit CVE-2023-46980 by executing arbitrary code and escalating privileges via a crafted script to the userID parameter.
3
Which version of Best Courier Management System is affected by CVE-2023-46980?
Best Courier Management System version 1.0 is affected by CVE-2023-46980.
4
Is there a fix available for CVE-2023-46980?
At this time, there is no information available regarding a fix for CVE-2023-46980. It is recommended to closely monitor the vendor's website for any updates or patches.
5
Where can I find more information about CVE-2023-46980?
More information about CVE-2023-46980 can be found at the following references: [link1], [link2].