CVE-2023-5269: SourceCodester Best Courier Management System GET Parameter parcel_list.php sql injection
A vulnerability was found in SourceCodester Best Courier Management System 1.0. It has been classified as critical. Affected is an unknown function of the file parcellist.php of the component GET Parameter Handler. The manipulation of the argument id/s leads to sql injection. The exploit has been disclosed to the public and may be used.
Other sources
A vulnerability was found in SourceCodester Best Courier Management System 1.0. It has been classified as critical. Affected is an unknown function of the file parcellist.php of the component GET Parameter Handler. The manipulation of the argument s leads to sql injection. The exploit has been disclosed to the public and may be used. VDB-240882 is the identifier assigned to this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-5269?
CVE-2023-5269 is a vulnerability found in SourceCodester Best Courier Management System 1.0 that allows for SQL injection.
How severe is CVE-2023-5269?
CVE-2023-5269 is classified as critical with a severity score of 8.8 (high).
What is the affected software version for CVE-2023-5269?
The affected software version for CVE-2023-5269 is Best Courier Management System 1.0.
How can the SQL injection vulnerability in CVE-2023-5269 be exploited?
The SQL injection vulnerability in CVE-2023-5269 can be exploited by manipulating the 's' argument in the parcel_list.php file.
Are there any references available for CVE-2023-5269?
Yes, references for CVE-2023-5269 can be found at the following links: [link1], [link2], [link3].