CVE-2023-5792: SourceCodester Sticky Notes App delete-note.php sql injection
A vulnerability has been found in SourceCodester Sticky Notes App 1.0 and classified as critical. This vulnerability affects unknown code of the file endpoint/delete-note.php. The manipulation of the argument note leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-243598 is the identifier assigned to this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-5792?
The severity of CVE-2023-5792 is critical with a score of 9.8.
How does CVE-2023-5792 affect SourceCodester Sticky Notes App?
CVE-2023-5792 affects SourceCodester Sticky Notes App version 1.0.
What is the CWE classification of CVE-2023-5792?
The CWE classification of CVE-2023-5792 is CWE-89 (SQL Injection).
How can CVE-2023-5792 be exploited?
CVE-2023-5792 can be exploited remotely by manipulating the 'note' parameter in the delete-note.php file.
Is there a fix available for CVE-2023-5792?
At the moment, there is no information available regarding a fix for CVE-2023-5792. It is recommended to follow the vendor's security advisories for updates.