A vulnerability has been found in SourceCodester Online Jewelry Store 1.0 and classified as critical. This vulnerability affects unknown code of the file login.php. The manipulation of the argument username/password leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-235606 is the identifier assigned to this vulnerability.
CVSS
No CVSS.
References
Configurations
No configuration.
Information
Published : 2023-07-28 05:15
Updated : 2023-07-28 13:44
NVD link : CVE-2023-3985
Mitre link : CVE-2023-3985
JSON object : View
Products Affected
No product.
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
