CVE-2023-6651: code-projects Matrimonial Site sql injection
A vulnerability was found in code-projects Matrimonial Site 1.0. It has been classified as critical. Affected is an unknown function of the file /auth/auth.php?user=1. The manipulation of the argument username leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-247344.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-6651?
CVE-2023-6651 is classified as critical due to the potential for SQL injection attacks.
How do I fix CVE-2023-6651?
To fix CVE-2023-6651, validate and sanitize all user inputs in the affected function to prevent SQL injection.
Which software is affected by CVE-2023-6651?
CVE-2023-6651 affects code-projects Matrimonial Site version 1.0.
Can CVE-2023-6651 be exploited remotely?
Yes, CVE-2023-6651 can be exploited remotely by manipulating the username parameter in the affected authentication function.
What type of attack is associated with CVE-2023-6651?
CVE-2023-6651 is associated with SQL injection attacks.