CVE-2026-8231: CodeAstro Online Catering Ordering System deleteorder.php sql injection
A vulnerability has been found in CodeAstro Online Catering Ordering System 1.0. This affects an unknown function of the file /deleteorder.php. The manipulation of the argument ID leads to sql injection. The attack is possible to be carried out remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-8231?
CVE-2026-8231 has a high severity rating due to the potential for SQL injection attacks.
How do I fix CVE-2026-8231?
To fix CVE-2026-8231, validate and sanitize input parameters in the deleteorder.php file to prevent SQL injection.
What systems are affected by CVE-2026-8231?
CVE-2026-8231 affects version 1.0 of the CodeAstro Online Catering Ordering System.
What type of vulnerability is CVE-2026-8231?
CVE-2026-8231 is categorized as an SQL injection vulnerability.
Can CVE-2026-8231 be exploited remotely?
Yes, CVE-2026-8231 can be exploited remotely if an attacker manipulates the ID argument.