CVE-2023-5272: SourceCodester Best Courier Management System GET Parameter edit_parcel.php sql injection
A vulnerability classified as critical has been found in SourceCodester Best Courier Management System 1.0. This affects an unknown part of the file editparcel.php of the component GET Parameter Handler. The manipulation of the argument id leads to sql injection. The exploit has been disclosed to the public and may be used. The identifier VDB-240885 was assigned to this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-5272?
The severity of CVE-2023-5272 is high with a CVSS score of 8.8.
What is the affected software of CVE-2023-5272?
The affected software of CVE-2023-5272 is SourceCodester Best Courier Management System 1.0.
What is the CWE ID of CVE-2023-5272?
The CWE ID of CVE-2023-5272 is CWE-89.
How does CVE-2023-5272 impact the system?
CVE-2023-5272 allows SQL injection through the id parameter in the file edit_parcel.php of the Best Courier Management System 1.0.
Is there a fix available for CVE-2023-5272?
Currently, there is no known fix available for CVE-2023-5272. It is recommended to follow the vendor's advisory for any updates or patches.