First published: Thu Dec 07 2023(Updated: )
A Blind SQL injection issue in ajax.php in GaatiTrack Courier Management System 1.0 allows an unauthenticated attacker to inject a payload via the email parameter during login.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mayurik Courier Management System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2023-48823.
The severity of CVE-2023-48823 is critical.
GaatiTrack Courier Management System version 1.0 is affected.
The vulnerability allows an unauthenticated attacker to perform Blind SQL injection by injecting a payload via the 'email' parameter during login.
Currently, there is no known fix available for this vulnerability. It is recommended to follow best security practices and consider upgrading to a patched version if one becomes available.