CVE-2023-5471: codeprojects Farmacia index.php sql injection
A vulnerability, which was classified as critical, was found in codeprojects Farmacia 1.0. Affected is an unknown function of the file index.php. The manipulation of the argument usario/senha leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-241608.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-5471?
CVE-2023-5471 is a critical vulnerability found in codeprojects Farmacia 1.0 that allows for remote SQL injection through the manipulation of the usario/senha argument in the index.php file.
How severe is CVE-2023-5471?
CVE-2023-5471 has a severity rating of 7.5, which is considered high.
Which software versions are affected by CVE-2023-5471?
CVE-2023-5471 affects version 1.0 of Farmacia Project Farmacia.
How can the SQL injection vulnerability in CVE-2023-5471 be exploited?
The SQL injection vulnerability in CVE-2023-5471 can be exploited remotely by manipulating the usario/senha argument in the index.php file.
Are there any fixes for CVE-2023-5471?
At this time, there is no known fix for CVE-2023-5471. It is recommended to update to a newer version of codeprojects Farmacia if available, or to apply any patches or mitigations provided by the vendor.