NA

CVE-2023-31519

Published: 16/05/2023 Updated: 22/05/2023
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Pharmacy Management System v1.0 exists to contain a SQL injection vulnerability via the email parameter at login_core.php.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

pharmacy management system project pharmacy management system 1.0

Github Repositories

Unrestricted File Upload in Pharmacy Management System 1.0

CVE-2023-31519 Injection-Vulnerability-In-Pharmacy-Management-System-10 In the 19th line of login_corephp, the input email is directly brought into the Sql query statement without filtering, resulting in a Sql injection attack The user used by my database is root@localhost Sql blind injection attack is used here, and the delay is 4 seconds at this time If the if () judgm